alert
Contents
alert¶
Alert fields that describe/normalize an indicator from a tool of a possible issue.
Attributes¶
Name |
Type |
Description |
Sample Value |
---|---|---|---|
alert_category |
string |
The category of an alert |
|
alert_description |
string |
The expanded description of the alert event |
|
alert_id |
integer |
Alert identifier defined by the tool or system that triggered the alert. Alert ids might repeat across different data sources |
|
alert_message |
string |
The message provided by the alert |
|
alert_severity |
string |
The severity of an alert |
|
alert_signature |
string |
The name or title of an alert |
|
alert_version |
string |
A signature or alert version |
|