Event field name |
Field value |
|
|
|
|
|
This field contains the value of the HTTP header x-real-ip or x-forwarded-for. If these headers are absent, the field will be empty. |
|
The address from which the user logged in. If the user logged in using a proxy, there will be a proxy address. |
|
Port from which the user logged in. If the user logged in using a proxy, there will be a port on the proxy side. |
|
User name of the user that created the incident. |
|
ID of the user that created the incident. |
|
ID of the incident. |
|
Name of the incident. |
|
Alert name. This field is filled if the incident was created based of an alert. If multiple alerts were involved, these are specified as a comma-separated list. |
|
|
|
Tenant ID. |
|
|
|
Tenant name. |
|
|