OSSEC Server Integration with SIEM

188 views
Skip to first unread message

vi...@acpl.com

unread,
Nov 20, 2015, 11:24:56 AM11/20/15
to ossec-list
Hi Support,

Need your help to understand, can we integrate the OSSEC server with SIEM solution. All event collected by OSSEC server will be forwarded to SIEM.

Regards
Vipin Hooda
Mobile: 9582596577

Santiago Bassett

unread,
Nov 20, 2015, 12:10:06 PM11/20/15
to ossec...@googlegroups.com
What SIEM do you use? Are you looking for professional support?

Best 



--

---
You received this message because you are subscribed to the Google Groups "ossec-list" group.
To unsubscribe from this group and stop receiving emails from it, send an email to ossec-list+...@googlegroups.com.
For more options, visit https://groups.google.com/d/optout.

vi...@acpl.com

unread,
Nov 24, 2015, 2:46:43 AM11/24/15
to ossec-list
Hi,

We are using HP ArcSight SIEM and looking to integrate OSSEC logs with that.

Regards
Vipin Hooda

Santiago Bassett

unread,
Dec 1, 2015, 12:43:40 PM12/1/15
to ossec...@googlegroups.com
Never tried it, but OSSEC support CEF format. You might be able to use it to send alerts to your Arcsight device.

More info at:

Reply all
Reply to author
Forward
0 new messages