43777 - LOG_ID_EVENT_NAC_ANOMALY_QUARANTINE
Message ID: 43777
Message Description: LOG_ID_EVENT_NAC_ANOMALY_QUARANTINE
Message Meaning: NAC anomaly quarantine
Type: Event
Category: system
Severity: Notice
Log Field Name |
Description |
Data Type |
Length |
---|---|---|---|
date |
Date |
string |
10 |
time |
Time |
string |
8 |
logid |
Log ID |
string |
10 |
type |
Log Type |
string |
16 |
subtype |
Log Subtype |
string |
20 |
level |
Log Level |
string |
11 |
devid |
Device ID |
string |
16 |
vd |
Virtual Domain Name |
string |
32 |
eventtime |
Event time |
uint64 |
20 |
tz |
Time zone |
string |
5 |
logdesc |
Log Description |
string |
4096 |
user |
User name of authenticated user |
string |
256 |
action |
Policy Action |
string |
65 |
msg |
Log Message |
string |
4096 |
service |
Name of Service |
string |
64 |
proto |
Protocol Number |
uint8 |
3 |
srcip |
Source IP |
ip |
39 |
srcport |
Source port |
uint16 |
5 |
dstip |
Destination IP |
ip |
39 |
dstport |
Destination Protocol Port |
uint16 |
5 |
duration |
Duration |
uint32 |
10 |
profile |
Profile Name |
string |
64 |
src_int |
Source Interface |
string |
64 |
dst_int |
Destination Interface |
string |
64 |
group |
User group Name |
string |
512 |
policyid |
Policy ID |
uint32 |
10 |
banned_src |
NAC quarantine Banned Source IP |
string |
16 |
banned_rule |
NAC quarantine Banned Rule Name |
string |
80 |
admin |
Administrator |
string |
64 |