Display Filter Reference: Syslog Message

Protocol field name: syslog

Versions: 1.0.0 to 4.4.0

Back to Display Filter Reference

Field name Description Type Versions
syslog.appnameApp NameCharacter string3.0.0 to 4.4.0
syslog.facilityFacilityUnsigned integer (16 bits)1.0.0 to 4.4.0
syslog.hostnameHostnameCharacter string3.0.0 to 4.4.0
syslog.levelLevelUnsigned integer (16 bits)1.0.0 to 4.4.0
syslog.msgMessageCharacter string1.0.0 to 4.4.0
syslog.msgidMessage IDCharacter string3.0.0 to 4.4.0
syslog.msgid.bomBOMUnsigned integer (24 bits)3.0.1 to 4.4.0
syslog.msglenMessage LengthCharacter string4.4.0
syslog.msu_presentSS7 MSU presentBoolean1.0.0 to 4.4.0
syslog.procidProcess IDCharacter string3.0.0 to 4.4.0
syslog.sdStructured DataLabel4.4.0
syslog.sd.elementElementLabel4.4.0
syslog.sd.element.nameElement NameCharacter string4.4.0
syslog.sd.paramParameterLabel4.4.0
syslog.sd.param.nameParameter NameCharacter string4.4.0
syslog.sd.param.valueParameter ValueCharacter string4.4.0
syslog.timestampTimestampDate and time3.0.0 to 4.4.0
syslog.timestamp_rfc3164Timestamp (RFC3164)Character string3.0.1 to 4.4.0
syslog.versionVersionCharacter string3.0.0 to 4.4.0