Cisco Cisco Firepower Management Center 2000 開発者ガイド

ページ / 180
 
10-3
FireSIGHT System Database Access Guide
 
Chapter 10      Schema: File Event Tables
  file_event
dst_continent_name
The name of the continent of the destination host.
**
 - Unknown
na
 - North America
as
 - Asia
af
 - Africa
eu
 - Europe
sa
 - South America
au
 - Australia
an
 - Antarctica
dst_country_id
Code for the country of the destination host.
dst_country_name
Name of the country of the destination host.
dst_ip_address_v6
Field deprecated in Version 5.2. Returns 
null
 for all queries.
dst_ipaddr
A binary representation of the IP address of the destination host involved in the 
triggering event.
dst_port
Port number for the destination of the connection. 
event_description
The additional event information associated with the event type.
event_id
Event identification number.
file_name
Name of the detected file.
file_sha
SHA256 hash of the file.
file_size
Size of the detected file in bytes.
file_type
The file type of the detected or quarantined file.
file_type_category
Description of the file category.
file_type_category_id
Numeric identifier for the file category.
file_type_id
ID number that maps to the file type. 
instance_id
Numerical ID of the Snort instance on the managed device that generated the 
event.
policy_uuid
Identification number that acts as a unique identifier for the access control policy 
that triggered the event.
file_event Fields (continued)
Field
Description