ArcSight Logger is one of products from Micro Focus SIEM platform. It  streams real-time data and categorizes them into specific logs and easily integrates with Security Operations. As a result, organizations of any size can use this high performance log data repository to aid in faster forensic analysis of IT operations, application development, and cyber security issues, and to simultaneously address multiple regulations.

Summary

Analyzer
 Search

 Live Event Viewer

Dashboard

Reports

Configuration

Search Example:
sourceAddress=10.1.1.2 and name startswith “TCP” and name contains “DEN” | fields requestUrl

References:

By Jonny

Leave a Reply