cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
586
Views
0
Helpful
1
Replies

how to integrate IPS LOGS in to SIM ( Symantec Information Manager)

p_venkatesan
Level 1
Level 1

Can any one tell me how to integrate IPS logs in to Symantec Information Manager and the Logs format.

Thanks for your help

-VP

1 Reply 1

johan.kellerman
Level 1
Level 1

Hi

You have to use SDEE to collect events (log entries) from the sensor. I believe that SIM supports SDEE otherwise your are left with SNMP/SNMP traps which is not a good choice for this since you have to tweak signatures. Syslog is unfortunately not an option.

Br

Johan Kellerman

Review Cisco Networking for a $25 gift card