Mimecast Log Reference

Log Samples

Learn what raw Mimecast events look like before they're processed in Logpoint:

Key-Value Pair Format (Pipe-separated)

datetime=2017-05-26T16:47:41+0100|aCode=111I111111mj8plHRDuHEA|acc=C0A0|SpamLimit=0|IP=1.1.1.1|Dir=Internal|MsgId=<messageId@messageId>|Subject=Message subject|[email protected]|[email protected]|[email protected]|SpamInfo=[]|Act=Acc|TlsVer=XXXXX|Cphr=AAA_AAAA_AAA_WITH_AAA_XXX_AAA_AAA|SpamScore=X

Key Fields:

  • datetime: Timestamp of the event

  • aCode: Mimecast message code

  • IP: Source IP address

  • Dir: Direction (Internal/Inbound/Outbound)

  • MsgId: Message ID

  • Subject: Email subject line

  • headerFrom: From address in email header

  • Sender: Actual sender address

  • Rcpt: Recipient address

  • Act: Action taken (Acc=Accepted, Rej=Rejected, etc.)

  • TlsVer: TLS version used

  • SpamScore: Spam score assigned to message

Last updated

Was this helpful?