Thinkst Canary Logs
Connecting Thinkst Canary logs in your Panther Console
Last updated
Was this helpful?
Was this helpful?
schema: ThinkstCanary.Alert
description: Alerts logs from Thinkst Canary
referenceURL: https://help.canary.tools/hc/en-gb/articles/360002431478-I-want-to-integrate-my-SIEM-with-my-Canaries
fields:
- name: AdditionalDetails
type: array
element:
type: array
element:
type: json
- name: AlertType
type: string
- name: CanaryID
type: string
- name: CanaryIP
type: string
indicators:
- ip
- name: CanaryPublicIP
type: string
indicators:
- ip
- name: CanaryLocation
type: string
- name: CanaryName
type: string
- name: CanaryPort
type: string
- name: Description
required: true
type: string
- name: Flock
type: string
- name: IncidentHash
type: string
indicators:
- md5
- name: IncidentKey
type: string
- name: Intro
required: true
type: string
- name: Reminder
type: string
- name: ReverseDNS
type: string
- name: MatchedAnnotations
type: string
- name: TimestampGlobalTZ
type: string
- name: Token
type: string
- name: Triggered
type: string
- name: SourceIP
type: string
indicators:
- ip
- name: Timestamp
required: true
type: timestamp
timeFormats:
- '%Y-%m-%d %H:%M:%S (%Z)'
isEventTime: true