pub enum SiemField {
Text(Cow<'static, str>),
IP(SiemIp),
Domain(String),
User(String),
AssetID(String),
U32(u32),
U64(u64),
I64(i64),
F64(f64),
Date(i64),
}
Variants
Text(Cow<'static, str>)
A basic String field
IP(SiemIp)
IPv4 or IPv6
Domain(String)
User(String)
AssetID(String)
This is a special field. Uniquely identifies an asset like a system, a computer or a mobile phone. Reason: the network is dynamic, the IP address is not fixed certain devices and the hostname of a system can be changed.
This field should be used with a dataset to recover information about an asset during the enchance phase: Getting the IP address, the users logged in the system or another information.
Can be multiple AssetsID associated with the same event because multiple virtual machines can be running in the same asset.
U32(u32)
unsigned number with 32 bits
U64(u64)
unsigned number with 64 bits
I64(i64)
signed number with 64 bits
F64(f64)
decimal number with 64 bits
Date(i64)
A date in a decimal number format with 64 bits
Implementations
Trait Implementations
Auto Trait Implementations
impl RefUnwindSafe for SiemField
impl Send for SiemField
impl Sync for SiemField
impl Unpin for SiemField
impl UnwindSafe for SiemField
Blanket Implementations
sourceimpl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
const: unstable · sourcefn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
Mutably borrows from an owned value. Read more