References
Browse and search all of our SIEM field references in one place.
Apache Software Foundation
HTTP Server
Web server logs
Fields
21
Apple
macOS
System and application logs from macOS
Fields
23
Atlassian
Confluence Cloud
Collaboration platform API logs
Fields
32
Barracuda Networks
CloudGen Firewall
Firewall and network security logs
Fields
44
Barracuda Networks
Mailhub
Email security and filtering logs
Fields
22
Barracuda Networks
WAF
Web application firewall logs
Fields
51
Bitdefender
GravityZone
Endpoint protection logs
Fields
199
Check Point
Firewall
Unified firewall and security logs
Fields
643
Cisco
ASA
Firewall and VPN appliance logs
Fields
59
Cisco
Catalyst
Switching infrastructure logs
Fields
19
Cisco
Firepower Threat Defense
Next-generation firewall and intrusion prevention logs
Fields
147
Cisco
Meraki
Cloud-managed network and security logs
Fields
70
Citrix
NetScaler
Application delivery and load balancing logs
Fields
87
Consistec
Caplon
Network monitoring and analysis logs
Fields
39
Cynerio
Cynerio
Fields
63
ESET
ESET Protect
Endpoint protection platform logs
Fields
78
Extreme Networks
ExtremeCloud IQ
Cloud-managed network logs
Fields
54
F5 NGINX
NGINX
Web server and reverse proxy logs
Fields
19
F5 Networks
BigIP ASM
Application firewall logs
Fields
35
Fortinet
FortiOS
Firewall and security appliance logs
Fields
741
Fortinet
FortiSIEM
SIEM event forwarder using CEF format
Fields
72
G DATA
Management Server
Endpoint protection management logs
Fields
47
LANCOM Systems
LANCOM Cloud
API logs from LANCOM cloud-managed infrastructure
Fields
55
LANCOM Systems
Unified Firewall
LANCOM firewall logs
Fields
45
Microsoft
Microsoft 365 Defender
Cloud-based endpoint and identity protection logs
Fields
587
Microsoft
Office 365
Collaboration and productivity logs (Teams, Outlook, SharePoint, OneDrive, etc.)
Fields
269
Microsoft
Sysmon
System monitoring logs for Windows and Linux
Fields
90
Microsoft
Windows
Local Windows system, security, and application logs
Fields
387
Microsoft
Windows Defender
Local antivirus and endpoint protection logs
Fields
105
MikroTik
RouterOS
Firewall logs
Fields
26
NLnet Labs
Unbound
DNS resolver logs
Fields
17
Netgate
pfSense/OPNsense
Open-source firewall logs
Fields
41
Palo Alto Networks
Panorama
Centralized management and firewall logs
Fields
280
Postfix Project
Postfix
Mail server logs
Fields
25
Securepoint
UTM
Firewall, VPN, and web filtering logs
Fields
38
SentinelOne
Singularity Platform
Endpoint detection and response logs
Fields
175
SonicWall
SonicOS
Firewall and network security logs
Fields
90
Sophos
Sophos Central
Cloud-managed endpoint and security logs
Fields
47
Sophos
UTM
Firewall, VPN, and web protection logs
Fields
87
Sophos
XGS Firewall
Next-generation firewall logs
Fields
415
Squid Project
Squid
Web proxy and caching logs
Fields
15
StrongSwan
Charon
VPN and IPsec logs
Fields
27
Trend Micro
Apex One
Endpoint protection logs
Fields
76
WatchGuard
Fireware
Firewall and security appliance logs
Fields
195
genua
Genugate
Firewall logs
Fields
17
ArcSight Common Event Format
Standardized log format for interoperability
Fields
128
DHCPD
Dynamic Host Configuration Protocol logs
Fields
8
Enginsight Advanced Persistant Threats
YARA-based threat detection logs
Fields
12
Enginsight Common Fields
Shared fields across Enginsight modules
Fields
114
Enginsight Defence
Defensive security telemetry logs
Fields
9
Enginsight File Integrity Management
File monitoring and change detection logs
Fields
15
Enginsight Generic Fields
Normalized log fields across categories
Fields
73
Enginsight Intrusion Detection System
IDS detection and alert logs
Fields
14
Enginsight Loggernaut
Custom log ingestion agent
Fields
22
Enginsight SIEM
Enginsight-native SIEM logs
Fields
11
Enginsight Shield
Endpoint protection and shielding logs
Fields
21
Enginsight Standard Fields
Manually populated fields for custom parsers
Fields
23
Event Relay
Remote syslog relay logs
Fields
14
File Logs
Generic file-based log ingestion
Fields
4
Mitre Attack
MITRE ATT&CK framework mapping
Fields
5
Secure Shell
Authentication and session logs
Fields
10
Syslog
Local Linux system and service logs
Fields
14