2018-08-29 11:18 PM
Hi,
We see NetWitness can collect Netapp logs and events, but we haven't found any storage device on RSA NetWitness Orchestrator Supported Interoperabilities list, so we guess NetWitness can only collect and analyse logs and events for storage device, have no further functions like operation automation.
1. May we know what NetWitness solution can do with storage device?
2. We guess other storage devices can be supported via Syslog and SNMP trap, then add customer rules to analyse, is it correct?
3. We hope our storage products can be integrated and certificated by NetWitness solution, may we know how?
2018-08-30 09:30 AM
Jason, NetWitness for Logs can ingest the logs from NetApp natively via syslog (see https://community.rsa.com/community/products/netwitness/parser-network/event-sources#N) and then yes, we could alert on behaviors you want to monitor. The page I linked to contains all officially supported devices, but NetWitness can also ingest logs from any device that can produce a log via syslog, SNMP, flat file, ODBC, etc. You can then use the default parser or create a custom one in minutes.
2018-08-30 10:24 PM
Hi Sean,
Thanks for your clarify, no problem now,