Skip to content

Latest commit

 

History

History
29 lines (22 loc) · 690 Bytes

5b9e88f6-1153-48a2-9c57-3689d174d7b6.md

File metadata and controls

29 lines (22 loc) · 690 Bytes

Mappings: Administrator Audit Trail

Input Requirements

Input Value
Vendor Druva
Product Druva inSync Cloud
Log Format JSON
Event ID Regex Pattern Admin Audit Trail

Record Output

Output Value
Vendor Druva
Product Druva inSync Cloud
Record Type AuditChange

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
normalizedAction None The static text logon is populated in this schema field.
severity severity
srcDevice_ip ip
success eventState This is a lookup field. More info to come in the catalog later...
user_username initiator