Endpoint Protector by CoSoSys¶
Key facts¶
- MSG Format based filter
- RFC5424 default port 514
- IETF Framed syslog must use port 601
Links¶
| Ref | Link |
|---|---|
| Splunk Add-on | na |
| Product Manual | na |
Sourcetypes¶
| sourcetype | notes |
|---|---|
| netwrix:epp | None |
Sourcetype and Index Configuration¶
| key | sourcetype | index | notes |
|---|---|---|---|
| netwrix_epp | netwrix:epp | netops | None |