Hi all,
i would like to ask on rsyslog configuration, since i have use rsyslog as
syslog server to received log from security devices and use SEC to
correlate it before send it to SIEM.
But i notice that, rsyslog also send the original message it received from
the security deviced to the SIEM, is it possible? since i have use it as
SEC input, and take the SEC output for rsyslog forward to SIEM.
Thanks
------------------------------------------------------------------------------
Rapidly troubleshoot problems before they affect your business. Most IT
organizations don't have a clear picture of how application performance
affects their revenue. With AppDynamics, you get 100% visibility into your
Java,.NET, & PHP application. Start your 15-day FREE TRIAL of AppDynamics Pro!
http://pubads.g.doubleclick.net/gampad/clk?id=84349831&iu=/4140/ostg.clktrk
_______________________________________________
Simple-evcorr-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/simple-evcorr-users