Exportable IPS recording log entry fields

IPS recording log entry fields are described in the following table. Because the fields are exportable, the table includes the syslog export field.

The following log entry fields are included in log data when you export IPS traffic recordings.

Table 1. IPS recording log entry fields
Field Syslog export field Description
Component ID COMP_ID The identifier of the creator of the log entry.
Creation Time TIMESTAMP Log entry creation time.
Packet data PACKET_DATA Recorded packet data.
Record frame cached RECORD_FRAME_CACHED Marker showing that this frame was received before the recording was started. The frame included in the recording was taken from a memory cache.
Record ID RECORD_ID (IPS and IPS recording only) Identifier of the traffic recording.
Sender NODE_ID IP address of the engine or server that sent the log entry.