CEF Formatter

CEF Formatter

Description

Config Example

Description

Config Example

Delivering the data in a CEF format - A known syntax for log records.

CEF Format

The data flow should be defined with the ‘CEF Formatter’ condition, inside the relevant forwarder:

  • Add Original Event - Adds the original event as a string into the result.

  • Add CEF Headers.

Output: The target receives the logs as as key-value pairs.