Esempi di registro di audit CEF
Copia
Oct 15 14:42:46 WIN-R1OR1V5M79O siem_log_forwarder[8608]: CEF:0|Acronis audit|DemoCustomer|1.0|user.login|user.login|2|cs1={"created_at":"2025-10-15T11:36:34.623186Z","id":"9281f317-2d71-4741-ac85-d085c94e95b6","date":"2025-10-15T11:36:28Z","event_type":"user.login","request_type":"ui","initiator_ip":"10.136.42.69","initiator_tenant_name":"DemoCustomer","initiator_tenant_uuid":"882d7a61-7124-433d-88fd-215399399838","initiator_user_name":"DemoCustomer","initiator_user_uuid":"f0c90ee2-b350-47be-a6d8-ce2e178bb937","object_name":"Demo Customer (DemoCustomer)","object_tenant_name":"DemoCustomer","object_tenant_uuid":"882d7a61-7124-433d-88fd-215399399838","object_user_name":"DemoCustomer","object_user_uuid":"f0c90ee2-b350-47be-a6d8-ce2e178bb937","original_event_uuid":"1e179947-6608-49cb-b733-d744c4bbc90e","severity_int":6,"severity_name":"info","tag":"all","topic":"audit_event_retention"} cs1Label=eventdetails Oct 15 14:42:46 WIN-R1OR1V5M79O siem_log_forwarder[8608]: CEF:0|Acronis audit|DemoCustomer|1.0|settings_service.audit.setting.value.update|settings_service.audit.setting.value.update|2|cs1={"created_at":"2025-10-15T11:42:14.614182Z","id":"101f7fb1-dd59-424a-b016-8986691f139f","date":"2025-10-15T11:42:11Z","event_type":"settings_service.audit.setting.value.update","request_type":"api","initiator_ip":"10.233.95.53","initiator_tenant_name":"/","initiator_tenant_uuid":"0e467be0-d567-4427-9dce-e7a2a16f9ada","object_name":"uninstall_protection","object_tenant_name":"Demo Customer (DemoCustomer)","object_tenant_uuid":"3c580230-60bb-42f6-a2da-ccabf0942065","original_event_uuid":"a23b3692-12c8-48b6-a828-ceceabbb2ffa","severity_int":6,"severity_name":"info","tag":"all","topic":"audit_event_retention"} cs1Label=eventdetails Oct 24 08:15:00 DESKTOP-VBTMUIG siem_log_forwarder[7292]: CEF:0|Acronis audit|DemoCustomerA|1.0|offering_item.turn_on|offering_item.turn_on|2|cs1={"created_at":"2025-10-24T15:06:10.192939Z","id":"1d53c87f-5a6f-4596-9368-6929671b788d","date":"2025-10-24T15:06:03Z","event_type":"offering_item.turn_on","request_type":"ui","initiator_ip":"10.35.7.44","initiator_tenant_name":"/","initiator_tenant_uuid":"0e467be0-d567-4427-9dce-e7a2a16f9ada","initiator_user_name":"root","initiator_user_uuid":"3e43c07f-a0e4-407c-a30a-280462bc8538","object_name":"bndl_archiving_storage","object_tenant_name":"DemoCustomerA","object_tenant_uuid":"d4155dae-f7cc-4063-8df5-a0610149f074","original_event_uuid":"dbb34536-e8f2-481f-8f3d-03094f9b385d","severity_int":6,"severity_name":"info","tag":"all","topic":"audit_event_retention"} cs1Label=eventdetails Oct 24 08:15:00 DESKTOP-VBTMUIG siem_log_forwarder[7292]: CEF:0|Acronis audit|DemoCustomerA|1.0|offering_item.turn_off|offering_item.turn_off|5|cs1={"created_at":"2025-10-24T15:06:10.186668Z","id":"e588f538-96bc-48f3-a799-9de073b0795f","date":"2025-10-24T15:06:03Z","event_type":"offering_item.turn_off","request_type":"ui","initiator_ip":"10.35.7.44","initiator_tenant_name":"/","initiator_tenant_uuid":"0e467be0-d567-4427-9dce-e7a2a16f9ada","initiator_user_name":"root","initiator_user_uuid":"3e43c07f-a0e4-407c-a30a-280462bc8538","object_name":"bndl_archiving_storage","object_tenant_name":"DemoCustomer A (DemoCustomerA)","object_tenant_uuid":"38c8ff04-99fb-446a-967d-461a5e299814","original_event_uuid":"bfbe9c06-f5ac-4804-bde8-4770659e8d9a","severity_int":4,"severity_name":"warning","tag":"all","topic":"audit_event_retention"} cs1Label=eventdetails Oct 24 08:15:00 DESKTOP-VBTMUIG siem_log_forwarder[7292]: CEF:0|Acronis audit|DemoCustomerA|1.0|offering_item.turn_off|offering_item.turn_off|5|cs1={"created_at":"2025-10-24T15:06:10.193067Z","id":"dbc0aa56-3aa3-44fc-bf91-83ac06aae807","date":"2025-10-24T15:06:03Z","event_type":"offering_item.turn_off","request_type":"ui","initiator_ip":"10.35.7.44","initiator_tenant_name":"/","initiator_tenant_uuid":"0e467be0-d567-4427-9dce-e7a2a16f9ada","initiator_user_name":"root","initiator_user_uuid":"3e43c07f-a0e4-407c-a30a-280462bc8538","object_name":"bndl_dr_compute_points","object_tenant_name":"DemoCustomerA","object_tenant_uuid":"d4155dae-f7cc-4063-8df5-a0610149f074","original_event_uuid":"b529f7b7-7f49-4c83-b465-530b826ea664","severity_int":4,"severity_name":"warning","tag":"all","topic":"audit_event_retention"} cs1Label=eventdetails