Skip to content

Latest commit

 

History

History
33 lines (26 loc) · 787 Bytes

cb107f45-2e4d-4c8b-ba9d-4805aee79fb7.md

File metadata and controls

33 lines (26 loc) · 787 Bytes

Mappings: SailPoint C2C Default Mapping

Input Requirements

Input Value
Vendor SailPoint
Product SailPoint
Log Format JSON
Event ID Regex Pattern _default_

Record Output

Output Value
Vendor SailPoint
Product SailPoint
Record Type Audit

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action action
changeTarget target.name
description name
device_hostname attributes.hostName
device_ip attributes.hostName
srcDevice_ip ipAddress
targetUser_username target.name
timestamp created We expect the orginal record value of created is in the format yyyy-MM-dd'T'HH:mm:ss.SSS'Z'
user_username attributes.accountName