Skip to content

Instantly share code, notes, and snippets.

@dhurley14
Created October 1, 2019 15:00
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save dhurley14/ff54a356d0ab07ddbd10b6c48b980d2d to your computer and use it in GitHub Desktop.
Save dhurley14/ff54a356d0ab07ddbd10b6c48b980d2d to your computer and use it in GitHub Desktop.
difference between csv and frank's json
agent.type
as.number
as.organization.name
client.as.number
client.as.organization.name
client.nat.ip
client.nat.port
client.user.domain
cloud.machine.type
destination.as.number
destination.as.organization.name
destination.nat.ip
destination.nat.port
destination.user.domain
dns.answers
dns.answers.class
dns.answers.data
dns.answers.name
dns.answers.ttl
dns.answers.type
dns.header_flags
dns.id
dns.op_code
dns.question.class
dns.question.name
dns.question.registered_domain
dns.question.type
dns.resolved_ip
dns.response_code
dns.type
event.code
event.provider
event.sequence
event.type
file.accessed
file.created
file.directory
file.hash.md5
file.hash.sha1
file.hash.sha256
file.hash.sha512
file.name
file.type
host.type
host.uptime
host.user.domain
log.logger
network.type
observer.type
process.hash.md5
process.hash.sha256
process.hash.sha512
process.pgid
process.thread.name
process.uptime
server.as.number
server.as.organization.name
server.nat.ip
server.nat.port
server.user.domain
service.type
source.as.number
source.as.organization.name
source.nat.ip
source.nat.port
source.user.domain
trace.id
transaction.id
user.domain
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment