alerts forwarding to IBM Qradar SIEM are not parsing
Best Answer
-
MJ-perComp Posts: 1,098 Superuser
Hi,
do you see the syslog entries from PMS on the SIEM box?
if yes: the problem is inside SIEM, contact IBM.
else: what are your syslog settings in PMS?6 1Like
This discussion has been closed.
Comments
yes we are able to see the logs at SIEM we will check wih IBM
Hello,
We also sending event from F-Secure to QRadar. Event aren't parsing so you need create own DSM for this events - if I good know, IBM don't have native DSM for F-Secure events.