Mappings: Cisco Meraki Flow Start
Legacy Parser Grok Patterns |
---|
CISCO_MERAKI_FLOW_START |
Output | Value |
---|---|
Vendor | Cisco Systems |
Product | Meraki |
Record Type | NetworkFlow |
Cloud SIEM Schema Field | Original Record Key | Notes |
---|---|---|
dstDevice_ip | dst_ip | |
dstDevice_natIp | xlate_dst_ip | |
dstPort | dst_port | |
ipProtocol | protocol | |
srcDevice_ip | src_ip | |
srcDevice_natIp | xlate_src_ip | |
srcPort | src_port | |
timestamp | log_timestamp | We expect the orginal record value of log_timestamp is in the format epoch_float |