Class ParseToOCSF

    • Method Detail

      • source

        public final String source()

        The path to the field in the log event that you want to parse. If you omit this value, the whole log message is parsed.

        Returns:
        The path to the field in the log event that you want to parse. If you omit this value, the whole log message is parsed.
      • eventSource

        public final EventSource eventSource()

        Specify the service or process that produces the log events that will be converted with this processor.

        If the service returns an enum value that is not available in the current SDK version, eventSource will return EventSource.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from eventSourceAsString().

        Returns:
        Specify the service or process that produces the log events that will be converted with this processor.
        See Also:
        EventSource
      • eventSourceAsString

        public final String eventSourceAsString()

        Specify the service or process that produces the log events that will be converted with this processor.

        If the service returns an enum value that is not available in the current SDK version, eventSource will return EventSource.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from eventSourceAsString().

        Returns:
        Specify the service or process that produces the log events that will be converted with this processor.
        See Also:
        EventSource
      • ocsfVersion

        public final OCSFVersion ocsfVersion()

        Specify which version of the OCSF schema to use for the transformed log events.

        If the service returns an enum value that is not available in the current SDK version, ocsfVersion will return OCSFVersion.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from ocsfVersionAsString().

        Returns:
        Specify which version of the OCSF schema to use for the transformed log events.
        See Also:
        OCSFVersion
      • ocsfVersionAsString

        public final String ocsfVersionAsString()

        Specify which version of the OCSF schema to use for the transformed log events.

        If the service returns an enum value that is not available in the current SDK version, ocsfVersion will return OCSFVersion.UNKNOWN_TO_SDK_VERSION. The raw value returned by the service is available from ocsfVersionAsString().

        Returns:
        Specify which version of the OCSF schema to use for the transformed log events.
        See Also:
        OCSFVersion
      • mappingVersion

        public final String mappingVersion()

        The version of the OCSF mapping to use for parsing log data.

        Returns:
        The version of the OCSF mapping to use for parsing log data.
      • hashCode

        public final int hashCode()
        Overrides:
        hashCode in class Object
      • equals

        public final boolean equals​(Object obj)
        Overrides:
        equals in class Object
      • toString

        public final String toString()
        Returns a string representation of this object. This is useful for testing and debugging. Sensitive data will be redacted from this string using a placeholder value.
        Overrides:
        toString in class Object
      • getValueForField

        public final <T> Optional<T> getValueForField​(String fieldName,
                                                      Class<T> clazz)