This website uses cookies. By clicking Accept, you consent to the use of cookies. Click Here to learn more about how we use cookies.
Accept
Reject

NetWitness Community

  • Home
  • Products
    • NetWitness Platform
      • Advisories
      • Documentation
        • Platform Documentation
        • Known Issues
        • Security Fixes
        • Hardware Documentation
        • Threat Content
        • Unified Data Model
        • Videos
      • Downloads
      • Integrations
      • Knowledge Base
    • NetWitness Cloud SIEM
      • Advisories
      • Documentation
      • Knowledge Base
    • NetWitness Detect AI
      • Advisories
      • Documentation
      • Knowledge Base
    • NetWitness Investigator
    • NetWitness Orchestrator
      • Advisories
      • Documentation
      • Knowledge Base
      • Legacy NetWitness Orchestrator
        • Advisories
        • Documentation
  • Community
    • Blog
    • Discussions
    • Events
    • Idea Exchange
  • Support
    • Case Portal
      • Create New Case
      • View My Cases
      • View My Team's Cases
    • Community Support
      • Getting Started
      • News & Announcements
      • Community Support Forum
      • Community Support Articles
    • Product Life Cycle
    • Support Information
    • General Security Advisories
  • Training
    • Blog
    • Certification Program
    • Course Catalog
      • Netwitness XDR
      • EC-Council Training
    • New Product Readiness
    • On-Demand Subscriptions
    • Student Resources
    • Upcoming Events
    • Role-Based Training
  • Technology Partners
  • Trust Center
Sign InRegister Now
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for 
Search instead for 
Did you mean: 
IshtiyaqShah
Employee IshtiyaqShah
Employee
since ‎2015-12-18
‎2021-04-14

User Statistics

  • 12 Posts
  • 0 Solutions
  • 1 Likes given
  • 19 Likes received
  • NetWitness Community
  • About IshtiyaqShah

User Activity

  • Posts
  • Replies

VLC Failover without using a third-party load balance solution

by IshtiyaqShah 2017-04-05 general.in NetWitness Community Blog • latest reply by TomiReiman 2017-11-21
2017-04-05
VLC Configuration steps A) On Each VLC do following steps: 1) Enable yum repositories on VLC’s.# vi /etc/yum.repos.d/CentOSBase.repo #set enable to 1 2) Install Keepalived on both VLC’s.# yum install keepalived 3) Configure keepalived config on VLC-1...

RSA Netwitness - Use Cases

by IshtiyaqShah 2016-10-26 general.in NetWitness Community Blog • latest reply by DesmondKwang 2019-05-27
2016-10-26
CategorySub Category#Use CaseLog Source#RSA Supported#Business Use CasesAccess/AuthenticationIdentity ManagementMonitor for use of disabled usernamesActive Directory , Databases, Applications, Web Proxy, HR dataIntegrating Windows AD and monitoring f...

Use cases - ESA Rules

by IshtiyaqShah 2016-03-23 general.in NetWitness Community Blog • latest reply by DesmondKwang 2019-05-27
2016-03-23
Here in this space an attempt is being made to list some Use cases, custom as well as Out of box (Live) for their effectiveness and usage in Threat monitoring within an enterprise. S.NoUse caseRSA OOB RuleDescriptionEvent Sources1DNS Amplificationesa...

COMPLIANCE AND SECURITY INFORMATION MANAGEMENT FOR PCI DSS REQUIREMENT

by IshtiyaqShah 2016-03-22 general.in NetWitness Community Blog
2016-03-22
In Today's highly competitive environment, business owners are constantly required to ensure their services and offerings are audited and reported for compliance and regulation conformance. Below is an attempt to understand how RSA portfolio helps ma...

Re: Data Moving from Between two RSA SA sites

by IshtiyaqShah 2017-05-30 general.in NetWitness Discussions
2017-05-30
I do not see any challenge in this setup. However, always discuss with Customer about their BCP logic which has to be considered like RPO/RTO and data availability. This has an impact on their provisioning of bandwidth availability between two sites....

Re: Wannacry

by IshtiyaqShah 2017-05-13 general.in NetWitness Discussions
2017-05-13
As per my research till now, i could find below information which could help in at least detection of any variants, which should be enough for you to isolate the machine quickly on your network and then perform investigations: > Check for traffic on ...

Re: Supress certain logs

by IshtiyaqShah 2017-03-02 general.in NetWitness Discussions • latest reply by RajaSha 2017-03-03
2017-03-02
Have a look at below URL mentioning Event filter at Log collection layer. Hope this helps. Though it talks only about event ID or logging level filter, this should help you in some cases if you know what logs to filter https://community.rsa.com/docs/...

Re: Fileless Attack

by IshtiyaqShah 2017-02-15 general.in NetWitness Discussions
2017-02-15
Hi Javier, regards to detecting malware, there are two ways Network layer and Endpoint layer in Netwitness suite of products. For actual identification of any malware executable which is fileless in nature can be identified by RSA netwitness endpoint...

Re: how i can know the end time of support on my NetWitness Analytics

by IshtiyaqShah 2016-12-29 general.in NetWitness Discussions • latest reply by AnasBdeir 2017-01-04
2016-12-29
Hi Anas, I would suggest you get hold of the Purchase Order copy and contact your Account Manager. Or simply you can write to support team and they will guide you with exact information.
View more
Likes from
User Count
Anonymous
1
Kedras
Kedras New Contributor
1
FilipKovar
FilipKovar Seeker
1
VolatianaRamaro
VolatianaRamaro Beginner
1
BobBent
BobBent Beginner
1
View all
Likes given to
User Count
MichaelPochan
MichaelPochan Beginner
1
View all
Powered by Khoros
  • Blog
  • Events
  • Discussions
  • Idea Exchange
  • Knowledge Base
  • Case Portal
  • Community Support
  • Product Life Cycle
  • Support Information
  • About the Community
  • Terms & Conditions
  • Privacy Statement
  • Acceptable Use Policy
  • Employee Login
© 2022 RSA Security LLC or its affiliates. All rights reserved.