Hi All, I am forwarding my logs from ESA to hybrid in CEF format (using
syslog) . I am extracting all available information from alerts. I have
enabled cef.xml , but logs are going as rsa_securitanyaltics_esa. jun 29
07:27:46 localhost CEF:2.0|RSA|Se...