Cisco Cisco Firepower Management Center 2000 Entwickleranleitung

Seite von 180
 
6-29
FireSIGHT System Database Access Guide
 
Chapter 6      Schema: Discovery Event and Network Map Tables
  rna_host_os
rna_host_os Fields
The following table describes the fields you can access in the 
rna_host_os
 table.
Table 6-24
rna_host_os Fields 
Field
Description
confidence
The FireSIGHT System-assigned confidence rating (from 
0
 to 
100
) for the identification of the 
operating system.
created_sec
The UNIX timestamp of the date and time the system first detected host activity.
host_id
ID number of the host.
last_seen_sec
The UNIX timestamp of the date and time the system last detected host activity.
os_uuid
A unique identifier for the operating system detected on the host. The UUID maps to the 
operating system name, vendor, and version in the Cisco database.
product
The operating system detected on the host.
source_type
The source of the host’s operating system identity:
  •
User
 - name of the user who entered the data via the web user interface
  •
Application
 - imported from another application via the host input feature
  •
Scanner
 - either Nmap or another scanner added through system policy
  •
rna
 - detected by the FireSIGHT System, either by a discovery event, port match, or pattern 
match
  •
NetFlow
 - the data was exported by a NetFlow-enabled device
vendor
The vendor of the operating system detected on the host.
version
The version of the operating system detected on the host.