Generated for monitored Syslog messages.
See Wikipedia for more information about the Syslog protocol.
The connection record for the underlying transport-layer session/flow.
The “facility” included in the message.
The “severity” included in the message.
The message logged.
Zeek currently parses only UDP syslog traffic. Support for TCP syslog will be added soon.