CEF
Structure of a CEF Message
CEF:Version|Device Vendor|Device Product|Device Version|Signature ID|Name|Severity|key1=value1 key2=value2 ...Example CEF Log Entry
CEF:0|Fortinet|FortiGate|6.4|12345|Blocked TCP connection|5|src=192.168.1.10 dst=10.0.0.5 spt=12345 dpt=443 proto=TCP act=blockedLast updated