A small helper for formatting ArcSight Common Event Format (CEF) compliant messages
Project description
format_cef
format_cef
is a little helper library for producing ArcSight Common Event
Format (CEF) compliant messages from structured arguments. You can use it
like this:
>>> from format_cef import format_cef
>>> format_cef(
'acme corp', 'TNT', 1.0, '404 | not found', 'Explosives not found', 10
oextensions={'deviceAction': 'bang = !'})
'CEF:0|acme corp|TNT|1.0|404 \| not found|Explosives not found|10|act=bang \= !'
Notice how the format format_cef
takes care of escaping delimiters correctly.
It will also ensure that each CEF extension complies to the restrictions
outlined in the CEF documentation.
This module deliberately remains agnostic as to the log message transport protocol (as does CEF itself). It is also designed to remain stateless so as to easy to test and use as a building block in larger systems.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Hashes for format_cef-0.0.4a3-py2.py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 0695cea633e2fb1edace696c6f4748b47abccbd6b84d17bb06d45ef82d22f7bc |
|
MD5 | f6da72382a47ba1eee8015c1f0715d98 |
|
BLAKE2b-256 | 3c8cee859bfff3d2ae9c113781ac9f2264b934174db4a7df2638fc84cedacdcb |