Skip to content

Latest commit

 

History

History
34 lines (27 loc) · 949 Bytes

4dc2b328-5039-4071-b84b-df1aa21c395d.md

File metadata and controls

34 lines (27 loc) · 949 Bytes

Mappings: Zscaler Workload Segmentation Catch All - Parser

Input Requirements

Input Value
Vendor Zscaler
Product Workload Segmentation
Log Format JSON
Event ID Regex Pattern _default_

Record Output

Output Value
Vendor Zscaler
Product Workload Segmentation
Record Type Network

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action storedTargetPolicy.action
application storedTargetApplicationName
description message
dstDevice_hostname storedTargetHostName
dstDevice_ip storedTargetHostAddr
dstPort storedTargetHostPort
ipProtocol l4Protocol This is a lookup field. More info to come in the catalog later...
srcDevice_ip storedSourceHostAddr
srcPort storedSourceHostPort
success storedTargetPolicy.action This is a lookup field. More info to come in the catalog later...