

Cadet 2nd Class
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2015-11-02
14:10
212 views
what are the details required to add an any new server to SIEM ?
what are the details required to add an any new server to SIEM ?
2 Replies
AdamHarris

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2015-11-03
00:22
IP Address can be one
amgupta

Absent Member.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Email to a Friend
- Report Inappropriate Content
2015-11-03
07:46
Here you go.
DeviceVendor, deviceProduct, deviceVersion,deviceHostname, deviceAddress, IS_HA and has virtual IP/host, logs location, perdaylogvolume(EPS/GB),domain,IS_Syslog
LogLcoation:
If file, then location, username/passwd to access the file, share the folder of this file, have the nw connectiviy between connector server and log server
If db, then db name, version, database instance name, table name, port no, local db user with read permission to table (incase of flex or smart).
If API, then username password with proper access
If syslog, then u need to provide the port and connector server IP to be configured. default is 514.
Hope it helps.
Regards,
Amit