Arcsight Question

5 pts.
Tags:
ArcSight
Data analysis
Snort
Does anyone have any experience with configuring ArcSight and Snort so that ArcSight can pull the payload information from the Snort sensor?

Answer Wiki

Thanks. We'll let you know when a new response is added.

Hello!

I had worked in the past on ArcSight Installation/Configuration/Management,

and Yes, you can configure the Manager to Pull the logs from the Snort,

you will need to have physical access and password and snort.conf details as well ,

also, you need to configure the SmartAgents, and select the “Snort Database”

and finally you will need the MySQL DB password and username from the snort.conf handy in order to get it running.

u can refer to the technical documentation.

if u need any help please email me at:-

nitin.blackhat[at]gmail.com

Discuss This Question:  

 
There was an error processing your information. Please try again later.
Thanks. We'll let you know when a new response is added.
Send me notifications when members answer or reply to this question.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Forgot Password

No problem! Submit your e-mail address below. We'll send you an e-mail containing your password.

Your password has been sent to:

To follow this tag...

There was an error processing your information. Please try again later.

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Thanks! We'll email you when relevant content is added and updated.

Following