cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
545
Views
0
Helpful
1
Replies

how to integrate IPS LOGS in to SIM ( Symantec Information Manager)

p_venkatesan
Level 1
Level 1

Can any one tell me how to integrate IPS logs in to Symantec Information Manager and the Logs format.

Thanks for your help

-VP

1 Reply 1

johan.kellerman
Level 1
Level 1

Hi

You have to use SDEE to collect events (log entries) from the sensor. I believe that SIM supports SDEE otherwise your are left with SNMP/SNMP traps which is not a good choice for this since you have to tweak signatures. Syslog is unfortunately not an option.

Br

Johan Kellerman

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card