Skip to content

Latest commit

 

History

History
33 lines (26 loc) · 829 Bytes

634432ec-9d62-4627-b094-ff8c916b5e7a.md

File metadata and controls

33 lines (26 loc) · 829 Bytes

Mappings: OpenVPN Authentication Attempt

Input Requirements

Input Value
Vendor OpenVPN
Product OpenVPN
Log Format JSON
Event ID Regex Pattern TLS.*

Record Output

Output Value
Vendor OpenVPN
Product OpenVPN
Record Type Authentication

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action action
cause log_message
description log_message
normalizedAction None The static text logon is populated in this schema field.
normalizedCause None The static text incorrect credentials is populated in this schema field.
srcDevice_ip src_ip
srcPort src_port
success action This is a lookup field. More info to come in the catalog later...
user_username username