Skip to content

Latest commit

 

History

History
40 lines (33 loc) · 836 Bytes

3d23e328-df86-48a7-b820-a0e9626db594.md

File metadata and controls

40 lines (33 loc) · 836 Bytes

Mappings: Squid Proxy - Parser

Input Requirements

Input Value
Vendor Squid
Product Squid Proxy
Log Format JSON
Event ID Regex Pattern _default_

Record Output

Output Value
Vendor Squid
Product Squid Proxy
Record Type NetworkProxy

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action event_name
bytesIn bytesIn
bytesOut bytesOut
dstDevice_ip dest_ip
dstPort dest_port
http_contentLength transfer_size
http_method http_method
http_response_contentType content_type
http_response_statusCode status_code
http_url url
http_userAgent http_user_agent
srcDevice_ip src_ip
srcPort src_port
success success
tcpProtocol protocol
user_username user