UserID HTTPS Fields
Focus
Focus
Strata Logging Service

UserID HTTPS Fields

Table of Contents

UserID HTTPS Fields

The following table identifies the UserID field names that the Log Forwarding app uses when you forward logs using the HTTPS log format.
HTTPS Name
Query Name
Field Type
AuthCompletionTime
timestamp
AuthFactorNo
int
AuthenticatedUserDomain
string
AuthenticatedUserName
string
AuthenticatedUserUUID
long
ConfigVersion
string
RepeatCount
int
CortexDataLakeTenantID
string
DestinationPort
int
DGHierarchyLevel1
int
DGHierarchyLevel2
int
DGHierarchyLevel3
int
DGHierarchyLevel4
int
EventID
string
IsDuplicateLog
boolean
IsDuplicateUser
boolean
LogExported
boolean
LogForwarded
boolean
IsPrismaNetworks
boolean
IsPrismaUsers
boolean
LogSource
string
LogSourceGroupID
string
DeviceSN
string
DeviceName
string
LogSourceTimeZoneOffset
int
TimeReceived
timestamp
LogType
string
MappingDataSource
string
MappingDataSourceName
string
MappingDataSourceType
string
MappingTimeout
int
MFAFactorType
string
PanoramaSN
string
PlatformType
string
SequenceNo
long
SourceIP
ip
SourcePort
int
Subtype
string
Tag
string
TimeGenerated
timestamp
TimeGeneratedHighResolution
timestamp_high_res
UGFlags
long
User
string
UserGroupFound
boolean
UserIdentifiedBySource
string
VendorName
string
VirtualLocation
string
VirtualSystemID
int
VirtualSystemName
string