

Lieutenant Commander
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2017-04-04
20:14
451 views
ArcSight CaseXML 1.2 FlexConnector
FlexConnector I wrote in 5 days after learning XML, DTDs, and XML Flexconnectors, for an immediate need to transform Case information into CEF and send the results to an external ticketing system.
[pdf-att]/home/lithium/migration/hp_protect724/mnt/jive_persist/binstore/scan_jivesbs/a27212.bin[/pdf-att]
1 Reply
pbrettle

Fleet Admiral
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2017-04-05
23:41
This is great stuff! Thanks for sharing. Basically, for anyone who hasn't realized what this is (and its gold) - this is the ability to use the export to external system trigger and have the data dropped to a folder and then processed by a FlexConnector where the data is parsed out and sent as CEF! This is great stuff and it shows how you can easily integrate ArcSight ESM with an external system with ease.
Thanks again!