WAPPLES

Download 94
Last updated Feb 19, 2024

wapples-alerts

Get alerts from WAPPLES device.

wapples-alerts profile=PROFILE [duration=NUM{mon|w|d|h|m|s}] [from=yyyyMMddHHmmss] [to=yyyyMMddHHmmss] [order=ORDER]
profile=PROFILE
WAPPLES connect profile code
duration=NUM{mon|w|d|h|m|s}
Scan only recent data. You should use s(second), m(minute), h(hour), d(day), mon(month) time unit. For example, 10s means data from 10 seconds earlier.
from=yyyyMMddHHmmss
Start time of range. yyyyMMddHHmmss format. If you omit time part, it will be padded by zero.
to=yyyyMMddHHmmss
End time of range. yyyyMMddHHmmss format. If you omit time part, it will be padded by zero.
order=ORDER
asc or desc. desc by default.

Output Fields

FieldTypeNameDescription
_timeDateTime
profileStringProfile
seqLongSeq
src_ipIP addressSrc IP
src_portIntegerSrc Port
dst_ipIP addressDst IP
dst_portIntegerDst Port
hostStringHost
uriStringUri
policyStringPolicy
signatureStringSignature
statusIntegerStatus
actionStringAction
creatorStringCreator
risk_scoreIntegerRisk Score
session_keyStringSession Key