Cloud object
The Cloud object contains information about a cloud account such as AWS Account ID, regions, etc.
Note: a superscript "O" after a caption indicates attribute is an observable,
for example: Device O.
Caption | Name | Requirement | Type | Description |
---|---|---|---|---|
Account | account | optional | Account | The account object describes details about the account that was the source or target of the activity. |
Network Zone | zone | optional | String | The availability zone in the cloud region, as defined by the cloud provider. |
Organization | org | optional | Organization | Organization and org unit relevant to the event or object. |
Project ID | project_uid | optional | String | The unique identifier of a Cloud project. |
Provider | provider | required | String | The unique name of the Cloud services provider, such as AWS, MS Azure, GCP, etc. |
Region | region | recommended | String | The name of the cloud region, as defined by the cloud provider. |
- Base Event Class
- Attribute: cloud
- API Activity Class
- Attribute: cloud
- Account Change Class
- Attribute: cloud
- Admin Group Query Class
- Attribute: cloud
- Application Lifecycle Class
- Attribute: cloud
- Authentication Class
- Attribute: cloud
- Authorize Session Class
- Attribute: cloud
- Base Event Class
- Attribute: cloud
- Compliance Finding Class
- Attribute: cloud
- DHCP Activity Class
- Attribute: cloud
- DNS Activity Class
- Attribute: cloud
- Data Security Finding Class
- Attribute: cloud
- Datastore Activity Class
- Attribute: cloud
- Detection Finding Class
- Attribute: cloud
- Device Config State Class
- Attribute: cloud
- Device Config State Change Class
- Attribute: cloud
- Device Inventory Info Class
- Attribute: cloud
- Email Activity Class
- Attribute: cloud
- Email File Activity Class
- Attribute: cloud
- Email URL Activity Class
- Attribute: cloud
- Entity Management Class
- Attribute: cloud
- Event Log Activity Class
- Attribute: cloud
- FTP Activity Class
- Attribute: cloud
- File Hosting Activity Class
- Attribute: cloud
- File Query Class
- Attribute: cloud
- File Remediation Activity Class
- Attribute: cloud
- File System Activity Class
- Attribute: cloud
- Folder Query Class
- Attribute: cloud
- Group Management Class
- Attribute: cloud
- HTTP Activity Class
- Attribute: cloud
- Incident Finding Class
- Attribute: cloud
- Job Query Class
- Attribute: cloud
- Kernel Activity Class
- Attribute: cloud
- Kernel Extension Activity Class
- Attribute: cloud
- Kernel Object Query Class
- Attribute: cloud
- Memory Activity Class
- Attribute: cloud
- Module Activity Class
- Attribute: cloud
- Module Query Class
- Attribute: cloud
- NTP Activity Class
- Attribute: cloud
- Network Activity Class
- Attribute: cloud
- Network Connection Query Class
- Attribute: cloud
- Network File Activity Class
- Attribute: cloud
- Network Remediation Activity Class
- Attribute: cloud
- Networks Query Class
- Attribute: cloud
- Operating System Patch State Class
- Attribute: cloud
- Peripheral Device Query Class
- Attribute: cloud
- Prefetch Query Class
- Attribute: cloud
- Process Activity Class
- Attribute: cloud
- Process Query Class
- Attribute: cloud
- Process Remediation Activity Class
- Attribute: cloud
- RDP Activity Class
- Attribute: cloud
- Registry Key Activity Class
- Attribute: cloud
- Registry Key Query Class
- Attribute: cloud
- Registry Value Activity Class
- Attribute: cloud
- Registry Value Query Class
- Attribute: cloud
- Remediation Activity Class
- Attribute: cloud
- SMB Activity Class
- Attribute: cloud
- SSH Activity Class
- Attribute: cloud
- Scan Activity Class
- Attribute: cloud
- Scheduled Job Activity Class
- Attribute: cloud
- Security Finding Class
- Attribute: cloud
- Service Query Class
- Attribute: cloud
- Software Inventory Info Class
- Attribute: cloud
- Tunnel Activity Class
- Attribute: cloud
- User Access Management Class
- Attribute: cloud
- User Inventory Info Class
- Attribute: cloud
- User Query Class
- Attribute: cloud
- User Session Query Class
- Attribute: cloud
- Vulnerability Finding Class
- Attribute: cloud
- Web Resource Access Activity Class
- Attribute: cloud
- Web Resources Activity Class
- Attribute: cloud
- Windows Resource Activity Class
- Attribute: cloud
- Windows Service Activity Class
- Attribute: cloud