Skip to content

Latest commit

 

History

History
35 lines (28 loc) · 872 Bytes

6f7191c1-afe4-4272-bc27-ab17d10601bf.md

File metadata and controls

35 lines (28 loc) · 872 Bytes

Mappings: Blue Coat Proxy 8

Input Requirements

Legacy Parser Grok Patterns
BLUECOAT_PROXY_8

Record Output

Output Value
Vendor Symantec
Product Proxy Secure Gateway
Record Type NetworkProxy

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action action
application bluecoat_application_name
device_ip src_ip
dstDevice_ip server_ip
dstPort port
http_method method
http_referer referer
http_response_contentType content_type
http_response_statusCode status_code
http_url %s%s
http_userAgent user_agent
srcDevice_ip src_ip
timestamp timestamp We expect the orginal record value of timestamp is in the format yyyy-MM-dd HH:mm:ss
user_username user