1 2 Previous Next 12 Replies Latest reply on Aug 24, 2017 7:17 PM by rickrick

    How to add as data source in the ESM; System Center Endpoint Protection 2016 also known as ForeFront Endpoint?

    rickrick

      Hello Team,

       

      How to add as data source in the ESM; System Center Endpoint Protection 2016 also known as ForeFront Endpoint?

       

      I tried ForeFront guide; the link is below but this is pulling sql DB and configured as supposed to be but did not work even after Firewall change and everything.

      https://kc.mcafee.com/resources/sites/MCAFEE/content/live/PRODUCT_DOCUMENTATION/ 24000/PD24940/en_US/Microsoft_Forefront_…

       

      If I am not wrong, can we use ESM SIEM collector agent using "Generic Log Tail" to collect the ForeFront Endpoint logs.

       

      If so, please show me the steps to configure or any knowledge base article to help me out. Please advise!

       

      Thank you.

        1 2 Previous Next