I have a question, if a use SFTP as a method of retrieval for a data source. What exactly is the operation that the SIEM do to retrieve the logs? That the file is locked for writing while the SIEM is processing the file?.
Download the new ePolicy Orchestrator (ePO) Support Center Extension which simplifies ePO management and provides support resources directly in the console. Learn more about ePO Support Center
2821 Mission College Blvd.
Santa Clara, CA 95054 USA
Consumer Support | Enterprise Support | McAfee.com
Legal | Privacy | Copyright © 2019 McAfee, LLC