mirror of
https://github.com/MicrosoftDocs/windows-itpro-docs.git
synced 2025-06-16 19:03:46 +00:00
fix table
This commit is contained in:
@ -28,7 +28,7 @@ Understand what data fields are exposed as part of the alerts API and how they m
|
|||||||
Field numbers match the numbers in the images below.
|
Field numbers match the numbers in the images below.
|
||||||
|
|
||||||
Portal label | SIEM field name | ArcSight field| Example value | Description
|
Portal label | SIEM field name | ArcSight field| Example value | Description
|
||||||
:---|:---|:---
|
:---|:---|:---|:---|:---
|
||||||
1 | AlertTitle | name | A dll was unexpectedly loaded into a high integrity process without a UAC prompt | Value available for every alert.
|
1 | AlertTitle | name | A dll was unexpectedly loaded into a high integrity process without a UAC prompt | Value available for every alert.
|
||||||
2 | Severity | deviceSeverity | Medium | Value available for every alert.
|
2 | Severity | deviceSeverity | Medium | Value available for every alert.
|
||||||
3 | Category | deviceEventCategory | Privilege Escalation | Value available for every alert.
|
3 | Category | deviceEventCategory | Privilege Escalation | Value available for every alert.
|
||||||
@ -62,11 +62,11 @@ Portal label | SIEM field name | ArcSight field| Example value | Description
|
|||||||
|
|
||||||

|

|
||||||
|
|
||||||

|

|
||||||
|
|
||||||

|

|
||||||
|
|
||||||

|

|
||||||
|
|
||||||

|

|
||||||
|
|
||||||
|
Reference in New Issue
Block a user