2014-02-12 02:18 AM
How we can integrate an windows system with RSA Security Analytics agentless.
Do we need to run the "winrm" command on windows system?
Thanks in advance.
2014-03-24 09:57 AM
Have anybody some idea for using legacy collector in non-domain enviroment?
deepanshu- don't forget to mark your question as Answered please
2014-03-24 09:59 AM
10.3.x does not support non-domain environments.
2014-03-24 10:12 AM
Well, I used the 2008 collector with local user authenticating on local machine not domain - and collected logs just ok (but it was part of a domain, I think if it wasn't - winrm wouldn't work at all, but 2003 is using wmi)
David,
I think, like other windows collection in envision/sa, you can use the local account for the service (I use it like that with envision and it works). But that would require a 2008 machine for every non-domain 2003 server which would be ugly. The legacy collector needs to be more flexible - to be able to connect to multiple domains and non-domain from a single 2008 host. Just dreamin'
2014-03-24 10:24 AM
Don't worry guys. Its going to be a reality.
2014-03-25 03:17 AM
How receive events from all standard logs (Application, System, Security)? I receive only Security log. Tried change Channels, but this not help me. Options Read All Events activated.