61001 - LOG_ID_SSH_COMMAND_BLOCK_ALERT
Message ID: 61001
Message Description: LOG_ID_SSH_COMMAND_BLOCK_ALERT
Message Meaning: SSH shell command is blocked
Type: SSH
Category: SSH-COMMAND
Severity: Alert
Log Field Name |
Description |
Data Type |
Length |
---|---|---|---|
action |
string |
17 |
|
channeltype |
string |
15 |
|
command |
string |
256 |
|
date |
string |
10 |
|
devid |
string |
16 |
|
direction |
string |
4096 |
|
dstintf |
string |
32 |
|
dstintfrole |
string |
10 |
|
dstip |
ip |
39 |
|
dstport |
uint16 |
5 |
|
eventtime |
uint64 |
20 |
|
eventtype |
string |
32 |
|
fctuid |
string |
32 |
|
group |
string |
64 |
|
level |
string |
11 |
|
logid |
string |
10 |
|
login |
string |
128 |
|
policyid |
uint32 |
10 |
|
profile |
string |
64 |
|
proto |
uint8 |
3 |
|
sessionid |
uint32 |
10 |
|
severity |
string |
8 |
|
srcdomain |
string |
255 |
|
srcintf |
string |
32 |
|
srcintfrole |
string |
10 |
|
srcip |
ip |
39 |
|
srcport |
uint16 |
5 |
|
subtype |
string |
20 |
|
time |
string |
8 |
|
type |
string |
16 |
|
tz |
string |
5 |
|
unauthuser |
string |
66 |
|
unauthusersource |
string |
66 |
|
user |
string |
256 |
|
vd |
string |
32 |