Skip to content

Class: AnalysisTarget

The analysis target defines the scope of monitored activities, specifying what

entity, system or process is analyzed for activity patterns.

URI: ocsf:AnalysisTarget

 classDiagram
    class AnalysisTarget
    click AnalysisTarget href "../AnalysisTarget/"
      OcsfObject <|-- AnalysisTarget
        click OcsfObject href "../OcsfObject/"

      AnalysisTarget : name

      AnalysisTarget : type

Inheritance

Slots

Name Cardinality and Range Description Inheritance
name 1
String
The specific name or identifier of the analysis target, such as the username ... direct
type 0..1
String
The category of the analysis target, such as User Account, Kubernetes Cluster... direct

Usages

used by used in type used
AnomalyAnalysis analysis_targets range AnalysisTarget

In Subsets

Aliases

  • Analysis Target

Identifier and Mapping Information

Schema Source

Mappings

Mapping Type Mapped Value
self ocsf:AnalysisTarget
native ocsf:AnalysisTarget

LinkML Source

Direct

name: AnalysisTarget
description: 'The analysis target defines the scope of monitored activities, specifying
  what

  entity, system or process is analyzed for activity patterns.'
in_subset:
- objects_subset
from_schema: https://w3id.org/lmodel/ocsf
aliases:
- Analysis Target
is_a: OcsfObject
slots:
- name
- type
slot_usage:
  name:
    name: name
    description: 'The specific name or identifier of the analysis target, such as
      the username of

      a User Account, the name of a Kubernetes Cluster, the identifier of a Network

      Namespace, or the name of an Application Component.'
    required: true
  type:
    name: type
    description: 'The category of the analysis target, such as User Account, Kubernetes
      Cluster,

      Network Namespace, or Application Component.'

Induced

name: AnalysisTarget
description: 'The analysis target defines the scope of monitored activities, specifying
  what

  entity, system or process is analyzed for activity patterns.'
in_subset:
- objects_subset
from_schema: https://w3id.org/lmodel/ocsf
aliases:
- Analysis Target
is_a: OcsfObject
slot_usage:
  name:
    name: name
    description: 'The specific name or identifier of the analysis target, such as
      the username of

      a User Account, the name of a Kubernetes Cluster, the identifier of a Network

      Namespace, or the name of an Application Component.'
    required: true
  type:
    name: type
    description: 'The category of the analysis target, such as User Account, Kubernetes
      Cluster,

      Network Namespace, or Application Component.'
attributes:
  name:
    name: name
    description: 'The specific name or identifier of the analysis target, such as
      the username of

      a User Account, the name of a Kubernetes Cluster, the identifier of a Network

      Namespace, or the name of an Application Component.'
    from_schema: https://w3id.org/lmodel/ocsf
    aliases:
    - Name
    rank: 1000
    alias: name
    owner: AnalysisTarget
    domain_of:
    - AnalysisTarget
    - Observable
    - Os
    - Osint
    - Package
    - Parameter
    - PrivilegeInfo
    - San
    - Scim
    - Script
    - ServicePrivilegeAnalysis
    - SoftwareComponent
    - Sso
    - StartupItem
    - ThreatActor
    - Token
    - Entity
    - Resource
    - Account
    - Agent
    - AiModel
    - Aircraft
    - Analytic
    - ApplicationObject
    - Assessment
    - AutonomousSystem
    - Campaign
    - Check
    - CisBenchmark
    - CisBenchmarkResult
    - CisControl
    - ClassifierDetails
    - Container
    - D3fTactic
    - D3fTechnique
    - Database
    - Databucket
    - DomainContact
    - Edge
    - Endpoint
    - Enrichment
    - EnvironmentVariable
    - Evidences
    - Extension
    - Feature
    - File
    - Graph
    - Group
    - HttpCookie
    - HttpHeader
    - Idp
    - Image
    - Job
    - Kernel
    - KeyValueObject
    - LoadBalancer
    - Logger
    - Malware
    - ManagedEntity
    - MessageContext
    - Metric
    - Mitigation
    - NetworkInterface
    - Node
    - Organization
    - PeripheralDevice
    - Policy
    - ProcessEntity
    - Product
    - QueryInfo
    - Reporter
    - ResourceDetails
    - Rule
    - Scan
    - Service
    - SubTechnique
    - Table
    - Tactic
    - Technique
    - Trait
    - TransformationInfo
    - UnmannedAerialSystem
    - User
    - WebResource
    - Device
    - FtpActivity
    - RegValue
    - WinResource
    - WinService
    - PrefetchQuery
    range: string
    required: true
  type:
    name: type
    description: 'The category of the analysis target, such as User Account, Kubernetes
      Cluster,

      Network Namespace, or Application Component.'
    from_schema: https://w3id.org/lmodel/ocsf
    aliases:
    - Type
    rank: 1000
    alias: type
    owner: AnalysisTarget
    domain_of:
    - AnalysisTarget
    - Observable
    - Os
    - Osint
    - Package
    - PrivilegeInfo
    - ProgrammaticCredential
    - RelatedEvent
    - San
    - Sbom
    - Script
    - SoftwareComponent
    - StartupItem
    - ThreatActor
    - Ticket
    - Timespan
    - TlsExtension
    - Token
    - Dns
    - Resource
    - Account
    - Agent
    - Analytic
    - ApplicationObject
    - AuthenticationToken
    - ClassifierDetails
    - Cve
    - Database
    - Databucket
    - DiscoveryDetails
    - DnsAnswer
    - DomainContact
    - EncryptionDetails
    - Endpoint
    - Enrichment
    - File
    - Graph
    - Group
    - Ja4Fingerprint
    - Kernel
    - ManagedEntity
    - Metadata
    - Module
    - NetworkEndpoint
    - NetworkInterface
    - Node
    - PeripheralDevice
    - Policy
    - Rule
    - Scan
    - Trait
    - UnmannedAerialSystem
    - UnmannedSystemOperatingArea
    - User
    - WebResource
    - Device
    - DatastoreActivity
    - FtpActivity
    - RegValue
    - WinResource
    range: string