Configuring DSMs
226
M
ICROSOFT
Step 7
Click
Save
.
Step 8
On the
Admin
tab, click
Deploy Changes
.
For more information on configuring log sources, see the
Log Sources User Guide.
Microsoft System
Center Operations
Manager
A SIEM Microsoft System Center Operations Manager (SCOM) DSM accepts
SCOM events by polling the OperationsManager database allowing SIEM to
record the relevant events.
Before you configure SIEM to integrate with the Microsoft SCOM, you must ensure
a database user account is configured with appropriate permissions to access the
SCOM OperationsManager SQL Server database. The appropriate authentication
mode may need to be enabled in the Security settings of the SQL Server
properties. For more information, please see your Microsoft SCOM documentation.
NOTE
Ensure that no firewall rules are blocking the communication between SIEM and
the SQL Server database associated with SCOM. For SCOM installations that
use a separate, dedicated computer for the SQL Server database, the EventView
view is queried on the database system, not the system running SCOM.
To configure SIEM to receive SCOM events:
Step 1
Click the
Admin
tab.
Step 2
On the navigation menu, click
Data Sources
.
The Data Sources panel is displayed.
Step 3
Click the
Log Sources
icon.
The Log Sources window is displayed.
Step 4
From the
Log Source Type
drop-down list box, select
Microsoft SCOM
.
Step 5
From the
Protocol Configuration
drop-down list box, select
JDBC
.
The JDBC protocol is displayed.
Step 6
Configure the following values:
Содержание Security Information and Event Manager
Страница 1: ...Enterasys Security Information and Event Manager SIEM Configuring DSMs Release 7 7 0 P N 9034592 05...
Страница 2: ......
Страница 8: ......
Страница 20: ......
Страница 22: ......
Страница 24: ......
Страница 26: ......
Страница 32: ......
Страница 34: ......
Страница 36: ......
Страница 38: ......
Страница 44: ......
Страница 58: ......
Страница 90: ......
Страница 92: ......
Страница 94: ......
Страница 114: ......
Страница 116: ......
Страница 122: ......
Страница 124: ......
Страница 126: ...Configuring DSMs 110 FIREEYE...
Страница 128: ......
Страница 130: ......
Страница 132: ......
Страница 136: ......
Страница 140: ......
Страница 144: ......
Страница 172: ......
Страница 176: ...Configuring DSMs 160 ISC BIND...
Страница 180: ......
Страница 182: ......
Страница 184: ......
Страница 204: ......
Страница 224: ......
Страница 246: ......
Страница 250: ......
Страница 256: ......
Страница 260: ......
Страница 276: ......
Страница 282: ......
Страница 284: ......
Страница 306: ......
Страница 308: ......
Страница 318: ......
Страница 322: ......
Страница 324: ......
Страница 346: ......
Страница 356: ......
Страница 366: ......
Страница 384: ......
Страница 392: ......
Страница 394: ......
Страница 396: ......
Страница 398: ......
Страница 404: ......
Страница 426: ......