Im Syslog-Protokoll aufgezeichnete Systemereignisse weisen das folgende Format auf.

syslog header (timestamp + hostname + sysmgr/)
Timestamp (from the service) 
Name/value pairs 
Name and value separated by delimiter '::' (double colons) 
Each name/value pair separated by delimiter ';;' (double semi-colons) 

Die Felder und Typen des Systemereignisses enthalten die folgenden Informationen.

Event ID :: 32 bit unsigned integer  
Timestamp :: 32 bit unsigned integer  
Application Name :: string  
Application Submodule :: string  
Application Profile :: string  
Event Code :: integer (possible values: 10007 10016 10043 20019)  
Severity :: string (possible values: INFORMATION LOW MEDIUM HIGH CRITICAL)  
Message ::