Difference between revisions of "Database Tables"
Jump to navigation
Jump to search
| Line 30: | Line 30: | ||
* <code>[ContentStatus]</code> gives meaning to integer values found in the <code>[ContentStatusID]</code> column of the <code><nowiki>[</nowiki>[[File Table|File]]<nowiki>]</nowiki></code> table. These values are also [[Content Status|defined constants.]] | * <code>[ContentStatus]</code> gives meaning to integer values found in the <code>[ContentStatusID]</code> column of the <code><nowiki>[</nowiki>[[File Table|File]]<nowiki>]</nowiki></code> table. These values are also [[Content Status|defined constants.]] | ||
* <code>[DataType]</code> gives meaning to integer values found in the <code>[DataTypeID]</code> column of the <code><nowiki>[</nowiki>[[Entity Table|Entity]]<nowiki>]</nowiki></code> table. These values are also [[DATA TYPE|defined constants.]] | * <code>[DataType]</code> gives meaning to integer values found in the <code>[DataTypeID]</code> column of the <code><nowiki>[</nowiki>[[Entity Table|Entity]]<nowiki>]</nowiki></code> table. These values are also [[DATA TYPE|defined constants.]] | ||
| − | * <code>[DepotStatus]</code> gives meaning to integer values found in the <code>[DepotStatusID]</code> column of the <code>[Depot]</code> table. | + | * <code>[DepotStatus]</code> gives meaning to integer values found in the <code>[DepotStatusID]</code> column of the <code><nowiki>[</nowiki>[[Depot Table|Depot]]<nowiki>]</nowiki></code> table. |
| − | * <code>[DepotType]</code> gives meaning to integer values found in the <code>[DepotTypeID]</code> column of the <code>[Depot]</code> table. These values are also [[Depot Types|defined constants.]] | + | * <code>[DepotType]</code> gives meaning to integer values found in the <code>[DepotTypeID]</code> column of the <code><nowiki>[</nowiki>[[Depot Table|Depot]]<nowiki>]</nowiki></code> table. These values are also [[Depot Types|defined constants.]] |
* <code>[EntityType]</code> gives meaning to integer values found in the <code>[EntityTypeID]</code> column of the <code><nowiki>[</nowiki>[[Entity Table|Entity]]<nowiki>]</nowiki></code> table. These values are also [[Entity Types|defined constants.]] | * <code>[EntityType]</code> gives meaning to integer values found in the <code>[EntityTypeID]</code> column of the <code><nowiki>[</nowiki>[[Entity Table|Entity]]<nowiki>]</nowiki></code> table. These values are also [[Entity Types|defined constants.]] | ||
* <code>[EventType]</code> gives meaning to integer values found in the <code>[EventTypeID]</code> column of the <code><nowiki>[</nowiki>[[Event Table|Event]]<nowiki>]</nowiki></code> table. These values are also [[Event Types|defined constants.]] | * <code>[EventType]</code> gives meaning to integer values found in the <code>[EventTypeID]</code> column of the <code><nowiki>[</nowiki>[[Event Table|Event]]<nowiki>]</nowiki></code> table. These values are also [[Event Types|defined constants.]] | ||
Revision as of 12:08, 20 February 2023
The Truxton database holds "hot" tables that are constantly written to as well as reference (read-only) tables.
Data Tables
These tables hold data gleaned from exploiting media.
[Account]- Holds accounts.[Alert]- Holds alerts.[BOLO]- Be On the Look Out information.[Content]- Holds content information.[Definition]- Holds definitions of terms.[Depot]- Holds depot information.[Entity]- Also known as artifacts.[ETLRoute]- Can be thought of as load configurations.[Event]- This holds events extracted from exploited data.[EXIF]- This holds Camera Information.[ExpandedFile]- This allows you to determine if a file has been expanded.[File]- The files found in exploited media.[FileType]- The types of files Truxton knows about.[InvestigatorAction]- Actions taken by the investigator while using the Analyst Desktop.[Location]- Geographic locations.[Log]- Holds entries in the load log.[Relation]- Relationships between items in Truxton.[Statistics]- Load statistics.[USBDevice]- USB Devices.[WebsiteVisit]- URLs found during exploitation.
Reference Tables
These tables exist only to give meanings to magic values so humans can better comprehend it.
[AlertStatus]gives meaning to integer values found in the[AlertStatusID]column of the[Alert]table.[BOLOStatus]gives meaning to integer values found in the[BOLOStatusID]column of the[BOLO]table.[ContentStatus]gives meaning to integer values found in the[ContentStatusID]column of the[File]table. These values are also defined constants.[DataType]gives meaning to integer values found in the[DataTypeID]column of the[Entity]table. These values are also defined constants.[DepotStatus]gives meaning to integer values found in the[DepotStatusID]column of the[Depot]table.[DepotType]gives meaning to integer values found in the[DepotTypeID]column of the[Depot]table. These values are also defined constants.[EntityType]gives meaning to integer values found in the[EntityTypeID]column of the[Entity]table. These values are also defined constants.[EventType]gives meaning to integer values found in the[EventTypeID]column of the[Event]table. These values are also defined constants.[GroupEntryStatus]gives meaning to integer values found in the[GroupEntryStatusID]column of the[GroupEntry]table.[GroupEntryType]gives meaning to integer values found in the[GroupEntryTypeID]column of the[GroupEntry]table.[GroupStatus]gives meaning to integer values found in the[GroupStatusID]column of the[Group]table.[InvestigationType]gives meaning to integer values found in the[InvestigationTypeID]column of the[Investigation]table. These values are also defined constants.[InvestigationStatus]gives meaning to integer values found in the[InvestigationStatusID]column of the[Investigation]table. These values are also defined constants.[LocationType]gives meaning to integer values found in the[LocationTypeID]column of the[Location]table. These values are also defined constants.[MediaStatus]gives meaning to integer values found in the[MediaStatusID]column of the[Media]table. These values are also defined constants.[MediaType]gives meaning to integer values found in the[MediaTypeID]column of the[Media]table. These values are also defined constants.[MessageAddressType]gives meaning to integer values found in the[MessageAddressTypeID]column of the[MessageAddress_Message]table.[MessageType]gives meaning to integer values found in the[MessageTypeID]column of the[Message]table. These values are also defined constants.[ObjectType]gives meaning to integer values found in the[ObjectTypeID]column of the[Relation]table. These values are also defined constants.[Origin]gives meaning to integer values found in the[OriginID]column of the[File]table. These values are also defined constants.[RelationType]gives meaning to integer values found in the[RelationTypeID]column of the[Relation]table. These values are also defined constants.[ReviewSource]gives meaning to integer values found in the[ReviewSourceID]column of the[Review]table.[ReviewStatus]gives meaning to integer values found in the[ReviewStatusID]column of the[Review]table.[ReviewType]gives meaning to integer values found in the[ReviewTypeID]column of the[Review]table.[URLType]gives meaning to integer values found in the[URLTypeID]column of the[WebsiteVisit]table. These values are also defined constants.[WebsiteMethod]gives meaning to integer values found in the[WebsiteMethodID]column of the[WebsiteVisit]table. These values are also defined constants.