Description | This article describes how to parse epoch time in milliseconds into the 'Start Time' and 'End Time' event attributes in FortiSIEM. |
Scope | FortiSIEM. |
Solution |
Define a pattern definition that matches the first ten digits:
<patternDefinitions>
<when test="exist _startTime"> |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.