Skip to main content

Security ContentExabeam Security Content in the Legacy Structure

Types of Event Type Fields

When an event builder creates an event from a log, information from that log is mapped to three types of fields: required, extended, and informational.

An event builder always creates an event of a specific type. Each event type has unique fields that correlate to certain information in a log. There are three types of fields: required, extended, and informational.

For an event builder to create an event, a log must contain information that matches an event type's required fields. Information that maps to extended and informational fields is optional to create an event, but is still useful to process and display the event.

For a table of event types and their required, extended, and informational fields, see Event Types and Required Fields.