Order of fields in Windows logs when collected by TIBCO LogLogic Lasso Enterprise

Order of fields in Windows logs when collected by TIBCO LogLogic Lasso Enterprise

book

Article ID: KB0077442

calendar_today

Updated On:

Products Versions
TIBCO LogLogic Lasso Enterprise all versions

Description

Lasso takes each field from a Windows event in event journals and turns it into a single line. These fields are not explicitly described.

The following list is the order in which the tab-separated values are placed. The string is constructed in the following order:

SubmitTime
ShortEventID
SourceName
UserName
SIDType
EventLogType
ComputerName
Category
Data
Msg
EventId
 

Issue/Introduction

This article describes the fields in Windows events as defined by Lasso Enterprise.