Cato Networks SASE

다운로드 0
업데이트 2026. 5. 17.

Cato Networks SASE 보안

event_type = Security

event_subtype 유형: Anti Malware, Application Sign-in, Apps Security, Apps Security API, DNS Protection, Dynamic Prevention, Internet Firewall, IPS, NG Anti Malware, SaaS Security API Data Protection, SDP Activity, Suspicious Activity, TLS, User Risk Event, WAN Firewall

번호타입필드이름설명
1날짜_time시각예: 2026-05-14 14:11:03
2문자열event_type이벤트유형예: Security
3문자열event_subtype이벤트세부유형예: Application Sign-in
4문자열risk위험도예: UNKNOWN
5IP 주소host_ip호스트IP예: 10.41.178.240
6IP 주소src_ip출발지IP예: 3.79.253.58
732비트 정수src_port출발지포트예: 54572
8IP 주소dst_ip목적지IP예: 82.102.152.91
932비트 정수dst_port목적지포트예: 443
10문자열protocol프로토콜예: TCP
11문자열app예: onedrive
12문자열action대응예: Succeeded
13문자열threat_verdict위협판정예: Not Scanned For Content Match
14문자열dns_queryDNS질의예: sulkvulnerableexpecting.com
15문자열category분류예: Reputation
16문자열signature공격명예: Domain reputation based signature - M...
17문자열policy정책예: Internet Traffic - Predefined
18문자열rule_name규칙이름예: OneDrive - Block personal OneDrive te...
19문자열user_name성명예: Josh Snow
20문자열user_email이메일예: josh.snow_catonetworks.com#ext#@catop...
21문자열tls_error_typeTLS오류유형예: fatal
22문자열tls_error_descriptionTLS오류설명예: unknown CA
23불리언is_sanctioned_app앱허용여부예: 0
24문자열pop_namePoP예: Tel Aviv
25문자열os_typeOS유형예: OS_MAC
26문자열user_agent유저에이전트예: Mozilla/5.0 (Macintosh; Intel Mac OS ...
27문자열domain도메인예: oneclient.sfx.ms
28문자열categories분류목록예: General, File Sharing, Computers and ...
29문자열urlURL예: https://oneclient.sfx.ms/PreSignInSet...
30문자열file_type파일유형예: json
31문자열direction방향예: OUTBOUND
32문자열src_country_name출발지국가명예: Germany
33문자열dst_country_name목적지국가명예: Israel
34문자열src_site_name출발지사이트예: Frank Moon
35문자열subnet_name서브넷예: global_range
36문자열src_endpoint_type출발지엔드포인트예: SDP User
37문자열src_is_site_or_vpn출발지유형예: SDP User
38문자열app_risk앱위험도예: 1
39문자열ai_app_risk_levelAI앱위험도예: Low
40문자열app_name앱이름예: Azure Portal
41문자열app_stack앱스택예: TCP, TLS, HTTP(S), OneDrive Personal
42문자열app_activity_category앱활동분류예: Upload
43문자열app_activity앱활동예: Third Party Login
44문자열client_class클라이언트분류예: Chrome 148.0.0
45문자열connector_type커넥터유형예: Microsoft AzureAD
46문자열connector_name커넥터이름예: CatoLabs-DemoMode-SignInActivities
47문자열client_version클라이언트버전예: 6.2.0.8682
48문자열device_name장치이름예: Compaq
49문자열device_os_type장치OS유형예: Windows Workstation
50불리언is_tls_inspectionTLS검사여부예: 1
51문자열tls_rule_nameTLS규칙이름예: Inspect Any
52IP 주소src_isp_ip출발지공인IP예: 37.142.102.13
53문자열asn_nameASN이름예: Hot-Net Internet Services Ltd.
54문자열dst_domain목적지도메인예: oneclient.sfx.ms
55IP 주소client_ip클라이언트IP예: 10.41.178.240
56IP 주소server_ip서버IP예: 82.102.152.91
57IP 주소public_ip공인IP예: 185.114.120.229
58문자열ad_nameAD이름예: Frank Moon
59문자열configured_hostname설정호스트명예: Compaq
60불리언is_tcp_accelerationTCP가속여부예: 1
61문자열qos_priorityQoS우선순위예: 255
62문자열host_mac호스트MAC예: 00:22:69:03:57:9b
63문자열reference_url참조URL예: /drive/_/dataservice/cacheproxy
64문자열event_id이벤트ID예: 3b096ce7cab3ac46
65문자열rule_id룰ID예: 206184
66문자열signature_id시그니처ID예: cid_dns_feed_malware_48_sw