Security Analytics

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity


Welcome to the Security Analytics Board!

Please take a look at our Stealthwatch Information Hub and our Stealthwatch Use Cases.

Forum Posts

We are getting alarms related to the "UDP Received" security event. After checking the flows, it is Microsoft Teams traffic the one triggering the security event. Is it possible to turno of this security event for traffic using a specific set of port...

Hello,    Currently I am facing the following issue. I have a cisco flow collector and I successfuly I register it to the Stealthwatch SMC. I can see it from the central system manager but with the status "Data Store not Configured". If I click on th...

I need to use on-prem SAL to increase FMC events retention on SNA and need to provide high availability between two data centers for my deployment. i also have have cisco telemetry broker. Would it be the same if 1- i configured ftd syslog to point t...

AAA184 by Level 2
  • 512 Views
  • 1 replies
  • 0 Helpful votes

Hi, As I have configured a CSE to generate an Alarm while a flow is seen between a host and peer, the Alarm outcome is widely different from flows that has seen in the flow search. Can anyone explain the issue or reason behind it?

navidn by Level 2
  • 854 Views
  • 3 replies
  • 0 Helpful votes