Palo Alto Networks · JSON Structure
Cortex Xsiam Data Ingestion Event Data Payload Structure
The payload structure for pre-normalized event data ingestion directly into the XSIAM data lake. Contains all required routing metadata plus the normalized event content for direct dataset indexing.
Cloud SecurityCybersecurityFirewallNetwork SecuritySASESOARThreat IntelligenceXDR
EventDataPayload is a JSON Structure definition published by Palo Alto Networks, describing 8 properties, of which 8 are required. It conforms to the https://json-structure.org/meta/core/v0/# meta-schema.
Properties
dataset
vendor
product
log_type
raw_log
timestamp
tenant_id
event_id
Meta-schema: https://json-structure.org/meta/core/v0/#