2013-11-12 01:23 PM
Good Afternoon,
I am new to RSA and am looking for some documentation that describes logical path that syslog data follows through the RSA devices (ie.., broker,decoder, collector, concentrator, parser, etc..) beginning with receipt of data forwarded from one of our syslog servers. We have an SA head unit, two log hybrids and a packet hybrid.
If I am posting in the wrong discussion, please let me know the more appropriate discussion I shouls check.
Thanks,
John
2013-11-13 09:33 AM
Not sure if this is exactly what you're looking for but here is a good resource on log collection data flow: http://docs.netwitness.com/2-RSA_SA10.2_User_Guide/10_Admin_Tasks/40_Configure_Log_Collection/00_Log_Collection_Data_Flow
Let us know if that helps.
2013-11-13 09:33 AM
Not sure if this is exactly what you're looking for but here is a good resource on log collection data flow: http://docs.netwitness.com/2-RSA_SA10.2_User_Guide/10_Admin_Tasks/40_Configure_Log_Collection/00_Log_Collection_Data_Flow
Let us know if that helps.