Skip to content

Latest commit

 

History

History
32 lines (25 loc) · 831 Bytes

88a8c54d-48b7-4602-8ac3-0512399d0372.md

File metadata and controls

32 lines (25 loc) · 831 Bytes

Mappings: McAfee Management of Native Encryption

Input Requirements

Input Value
Vendor McAfee
Product Management of Native Encryption
Log Format CEF
Event ID Regex Pattern _default_

Record Output

Output Value
Vendor McAfee
Product McAfee Management of Native Encryption
Record Type Endpoint

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action act
description Event Name
device_hostname dhost
device_ip src
device_natIp src
severity severity This is a lookup field. More info to come in the catalog later...
timestamp deviceCustomDate1 We expect the orginal record value of deviceCustomDate1 is in the format yyyy-MM-dd HH:mm:ss.SSS
user_username suser