Skip to main content

format_cef

format_cef is a little helper library for producing ArcSight Common Event Format (CEF) compliant messages from structured arguments. You can use it like this:

>>> from format_cef import format_cef
>>> format_cef(
    'acme corp', 'TNT', 1.0, '404 | not found', 'Explosives not found', 10
    oextensions={'deviceAction': 'bang = !'})
'CEF:0|acme corp|TNT|1.0|404 \| not found|Explosives not found|10|act=bang \= !'

Notice how the format format_cef takes care of escaping delimiters correctly. It will also ensure that each CEF extension complies to the restrictions outlined in the CEF documentation.

This module deliberately remains agnostic as to the log message transport protocol (as does CEF itself). It is also designed to remain stateless so as to easy to test and use as a building block in larger systems.

Metadata

Release files for format-cef 0.0.4

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for format-cef 0.0.4
File Size Uploaded
format_cef-0.0.4.tar.gz 7.0 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for format-cef 0.0.4
File Interpreter ABI Platform
format_cef-0.0.4-py2.py3-none-any.whl Python 3, Python 2 none any Details

Total release size: 16.7 kB

Release files / format_cef-0.0.4.tar.gz

Download URL format_cef-0.0.4.tar.gz
Size 7.0 kB
Tags Source
SHA-256 checksum
How to use checksums
627e7bb836a8eb20cc33adb0196fa3571b78664d4920bd2d26e6636169b364c4
BLAKE2b-256 checksum
How to use checksums
1cfef43ebac61feb9129e387a758bb1b71d3742ad3daac97416494cde052c341
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/2.0.0 pkginfo/1.5.0.1 requests/2.22.0 setuptools/41.6.0 requests-toolbelt/0.9.1 tqdm/4.37.0 CPython/3.7.1

Release files / format_cef-0.0.4-py2.py3-none-any.whl

Download URL format_cef-0.0.4-py2.py3-none-any.whl
Size 9.7 kB
Tags Python 2 Python 3
SHA-256 checksum
How to use checksums
c7ef490b75f9c624359a6f87c905a5764c86a48332d10e957deaea93cba90bbf
BLAKE2b-256 checksum
How to use checksums
76e619c01b8322b48ef14af2e30d256cf9ee9df3fa69b814a86d11e455982291
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/2.0.0 pkginfo/1.5.0.1 requests/2.22.0 setuptools/41.6.0 requests-toolbelt/0.9.1 tqdm/4.37.0 CPython/3.7.1
Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page