Configuring DSMs
126
HP
A log file protocol source allows SIEM to retrieve archived log files from a remote
host. The HP Tandem DSM supports the bulk loading of log files using the log file
protocol source.
When configuring your HP Tandem device to use the log file protocol, make sure
the hostname or IP address configured in the HP Tandem device is the same as
configured in the Remote Host parameter in the Log File Protocol configuration.
For more information, see the
Log Sources User Guide
.
The SafeGuard Audit file names have the following format:
Annnnnnn
The single alphabetic character
A
is followed by a seven-digit decimal integer
nnnnnnn
, which increments by one each time a name is generated in the same
audit pool.
You are now ready to configure the log source and protocol in SIEM:
Step 1
From the
Log Source Type
drop-down list box, select
HP Tandem
.
Step 2
To configure the log file protocol, from the
Protocol Configuration
drop-down list
box, select
Log File
.
Your system must be running the latest version of the log file protocol to integrate
with an HP Tandem device:
For information about installing and configuring the log file protocol, see the Log
Sources User Guide.
For more information about HP Tandem see your vendor documentation.
Hewlett Packard
UNIX (HP-UX)
You can integrate an HP-UX device with SIEM. An HP-UX DSM accepts events
using syslog. Before you configure SIEM to integrate with an HP-UX device, you
must:
Step 1
Log in to the HP-UX device command line interface.
Step 2
Open the following file:
/etc/syslog.conf
Step 3
Add the following line:
<facility>.<level>
<destination>
Where:
<facility>
is auth.
<level>
is info.
<destination>
is the IP address of the SIEM system.
Step 4
Save and exit the file.
Содержание Security Information and Event Manager
Страница 1: ...Enterasys Security Information and Event Manager SIEM Configuring DSMs Release 7 7 0 P N 9034592 05...
Страница 2: ......
Страница 8: ......
Страница 20: ......
Страница 22: ......
Страница 24: ......
Страница 26: ......
Страница 32: ......
Страница 34: ......
Страница 36: ......
Страница 38: ......
Страница 44: ......
Страница 58: ......
Страница 90: ......
Страница 92: ......
Страница 94: ......
Страница 114: ......
Страница 116: ......
Страница 122: ......
Страница 124: ......
Страница 126: ...Configuring DSMs 110 FIREEYE...
Страница 128: ......
Страница 130: ......
Страница 132: ......
Страница 136: ......
Страница 140: ......
Страница 144: ......
Страница 172: ......
Страница 176: ...Configuring DSMs 160 ISC BIND...
Страница 180: ......
Страница 182: ......
Страница 184: ......
Страница 204: ......
Страница 224: ......
Страница 246: ......
Страница 250: ......
Страница 256: ......
Страница 260: ......
Страница 276: ......
Страница 282: ......
Страница 284: ......
Страница 306: ......
Страница 308: ......
Страница 318: ......
Страница 322: ......
Страница 324: ......
Страница 346: ......
Страница 356: ......
Страница 366: ......
Страница 384: ......
Страница 392: ......
Страница 394: ......
Страница 396: ......
Страница 398: ......
Страница 404: ......
Страница 426: ......