Endpoint Protector by CoSoSys¶
Key facts¶
- MSG Format based filter
- RFC5424 default port 514
- IETF Framed syslog must use port 601
Links¶
| Ref | Link | 
|---|---|
| Splunk Add-on | na | 
| Product Manual | na | 
Sourcetypes¶
| sourcetype | notes | 
|---|---|
| netwrix:epp | None | 
Sourcetype and Index Configuration¶
| key | sourcetype | index | notes | 
|---|---|---|---|
| netwrix_epp | netwrix:epp | netops | None |