Struct evtx::EvtxRecord
source · pub struct EvtxRecord<'a> {
pub chunk: &'a EvtxChunk<'a>,
pub event_record_id: u64,
pub timestamp: DateTime<Utc>,
pub tokens: Vec<BinXMLDeserializedTokens<'a>>,
pub settings: Arc<ParserSettings>,
}
Fields§
§chunk: &'a EvtxChunk<'a>
§event_record_id: u64
§timestamp: DateTime<Utc>
§tokens: Vec<BinXMLDeserializedTokens<'a>>
§settings: Arc<ParserSettings>
Implementations§
source§impl<'a> EvtxRecord<'a>
impl<'a> EvtxRecord<'a>
sourcepub fn into_output<T: BinXmlOutput>(self, output_builder: &mut T) -> Result<()>
pub fn into_output<T: BinXmlOutput>(self, output_builder: &mut T) -> Result<()>
Consumes the record, processing it using the given output_builder
.
sourcepub fn into_json_value(self) -> Result<SerializedEvtxRecord<Value>>
pub fn into_json_value(self) -> Result<SerializedEvtxRecord<Value>>
Consumes the record, returning a EvtxRecordWithJsonValue
with the serde_json::Value
data.
sourcepub fn into_json(self) -> Result<SerializedEvtxRecord<String>>
pub fn into_json(self) -> Result<SerializedEvtxRecord<String>>
Consumes the record and parse it, producing a JSON serialized record.
sourcepub fn into_xml(self) -> Result<SerializedEvtxRecord<String>>
pub fn into_xml(self) -> Result<SerializedEvtxRecord<String>>
Consumes the record and parse it, producing an XML serialized record.
Trait Implementations§
source§impl<'a> Clone for EvtxRecord<'a>
impl<'a> Clone for EvtxRecord<'a>
source§fn clone(&self) -> EvtxRecord<'a>
fn clone(&self) -> EvtxRecord<'a>
Returns a copy of the value. Read more
1.0.0 · source§fn clone_from(&mut self, source: &Self)
fn clone_from(&mut self, source: &Self)
Performs copy-assignment from
source
. Read moreAuto Trait Implementations§
impl<'a> Freeze for EvtxRecord<'a>
impl<'a> !RefUnwindSafe for EvtxRecord<'a>
impl<'a> Send for EvtxRecord<'a>
impl<'a> Sync for EvtxRecord<'a>
impl<'a> Unpin for EvtxRecord<'a>
impl<'a> !UnwindSafe for EvtxRecord<'a>
Blanket Implementations§
source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more