<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Download for TA-trendmicro in All Apps and Add-ons</title>
    <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114883#M71663</link>
    <description>&lt;P&gt;Hello Mike, Did you made any progress on the above topic? I looking for an add-on/app which will help me best with ingesting SMEX logs from Trend Micro Control Managers (Version: 6.0 (Build 1327) service pack:3). I would really appreciate any help you can offer on this.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Varma&lt;/P&gt;</description>
    <pubDate>Mon, 07 Aug 2017 16:04:54 GMT</pubDate>
    <dc:creator>varma1729</dc:creator>
    <dc:date>2017-08-07T16:04:54Z</dc:date>
    <item>
      <title>Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114877#M71657</link>
      <description>&lt;P&gt;In the answer below it referenced a TA for Trendmicro.  I could not find this on apps.splunk.com&lt;/P&gt;

&lt;P&gt;&lt;A href="http://answers.splunk.com/answers/36575/how-do-we-import-mcafee-epo-into-splunk"&gt;how-do-we-import-mcafee-epo-into-splunk&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Is this TA only available with the paid version of ES?&lt;BR /&gt;&lt;BR /&gt;
Anyone know where I can download without buying ES?&lt;BR /&gt;&lt;BR /&gt;
Anyone know a way to get TrendMicro Control Manager Logs into splunk?&lt;BR /&gt;
Anyone working on a Trendmicro Dashboard or App?&lt;/P&gt;</description>
      <pubDate>Tue, 01 Apr 2014 13:03:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114877#M71657</guid>
      <dc:creator>hartfoml</dc:creator>
      <dc:date>2014-04-01T13:03:46Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114878#M71658</link>
      <description>&lt;P&gt;TrendMicro Control Manager is a great source to monitor AV detection across all OfficeScan and ScanMail clients. Has anyone made any progress here?&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2016 17:47:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114878#M71658</guid>
      <dc:creator>plalo</dc:creator>
      <dc:date>2016-04-04T17:47:14Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114879#M71659</link>
      <description>&lt;P&gt;There are two apps on Splunkbase now:&lt;/P&gt;

&lt;UL&gt;
&lt;LI&gt;&lt;A href="https://splunkbase.splunk.com/app/1936/"&gt;Trend Micro Deep Security for Splunk&lt;/A&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;A href="https://splunkbase.splunk.com/app/2867/"&gt;Trend Micro Deep Discovery App for Splunk&lt;/A&gt;&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Mon, 04 Apr 2016 17:56:45 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114879#M71659</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2016-04-04T17:56:45Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114880#M71660</link>
      <description>&lt;P&gt;Thanks ChrisG,&lt;/P&gt;

&lt;P&gt;I am aware of these, however, they don't seem to have functionality for the other TrendMicro products as mention by OP - TrendMicro Control Manager logs which collect all the alerts from the controlled OfficeScan endpoints as well as ScanMail if so configured. This is the TrendMicro data of interest which should not be confused with the DeepSecurity products.&lt;/P&gt;

&lt;P&gt;Do you know of a means for Splunk ingestion of the Control Manager events collected from OfficeScan\ScanMail clients?&lt;/P&gt;

&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2016 18:05:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114880#M71660</guid>
      <dc:creator>plalo</dc:creator>
      <dc:date>2016-04-04T18:05:26Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114881#M71661</link>
      <description>&lt;P&gt;Thanks. I am not really familiar with Trend Micro products, so I was just highlighting the available apps as a response to the original "Anyone working on a Trendmicro Dashboard or App" question, because these weren't available at the time of the original post.&lt;/P&gt;

&lt;P&gt;So, not a great answer to your follow-up comment/question. My apologies.&lt;/P&gt;

&lt;P&gt;You could contact the developer of the existing app to see if there are other resources he's aware of.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2016 18:16:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114881#M71661</guid>
      <dc:creator>ChrisG</dc:creator>
      <dc:date>2016-04-04T18:16:00Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114882#M71662</link>
      <description>&lt;P&gt;Thank you for the details and follow up.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2016 18:16:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114882#M71662</guid>
      <dc:creator>plalo</dc:creator>
      <dc:date>2016-04-04T18:16:56Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114883#M71663</link>
      <description>&lt;P&gt;Hello Mike, Did you made any progress on the above topic? I looking for an add-on/app which will help me best with ingesting SMEX logs from Trend Micro Control Managers (Version: 6.0 (Build 1327) service pack:3). I would really appreciate any help you can offer on this.&lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
Varma&lt;/P&gt;</description>
      <pubDate>Mon, 07 Aug 2017 16:04:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114883#M71663</guid>
      <dc:creator>varma1729</dc:creator>
      <dc:date>2017-08-07T16:04:54Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114884#M71664</link>
      <description>&lt;P&gt;Hi Verma1729,&lt;/P&gt;

&lt;P&gt;To my knowledge there is released add-on/app for ingesting the Trend Micro Control Manager Logs. &lt;BR /&gt;
We had the same issues and ended up configuring DB connect to pull the logs directly from the Control Manager database then build it out from there.&lt;/P&gt;

&lt;P&gt;The Control manager DB schema is not publicly available so you will need to contact your TAM to get your hands on it. &lt;BR /&gt;
Link to DB Connect: &lt;A href="https://splunkbase.splunk.com/app/2686/"&gt;https://splunkbase.splunk.com/app/2686/&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Cheers,&lt;BR /&gt;
Matt&lt;/P&gt;</description>
      <pubDate>Wed, 13 Sep 2017 03:02:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114884#M71664</guid>
      <dc:creator>helarn</dc:creator>
      <dc:date>2017-09-13T03:02:33Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114885#M71665</link>
      <description>&lt;P&gt;can anyone confirm if TA for Trendmicro is exclusive to Splunk ES only? Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 03 Nov 2017 04:10:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114885#M71665</guid>
      <dc:creator>lloydknight</dc:creator>
      <dc:date>2017-11-03T04:10:56Z</dc:date>
    </item>
    <item>
      <title>Re: Download for TA-trendmicro</title>
      <link>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114886#M71666</link>
      <description>&lt;P&gt;Hi, TA-trendmicro is indeed delivered with Splunk Enterprise Security. To deploy it in a distributed environment, you will need to extract the add-on from the Splunk ES package and install/configure it across your indexers (cluster) and the forwarder running TMCM. &lt;BR /&gt;
In TMCM you need to configure the alerts you are interested in to write an event in the Application Windows Event Log. TMCM events will be processed by TA-trendmicro, assigning sourcetypes, tags, extracting fields etc. so they become available to the ES Data Models.&lt;/P&gt;

&lt;P&gt;I got the data into Splunk, properly tagged, sourcetype and all. However I don't find the data in ES ? Did you ? What more is needed ? &lt;/P&gt;

&lt;P&gt;Thanks,&lt;BR /&gt;
JohMut&lt;/P&gt;</description>
      <pubDate>Tue, 19 Nov 2019 09:47:14 GMT</pubDate>
      <guid>https://community.splunk.com/t5/All-Apps-and-Add-ons/Download-for-TA-trendmicro/m-p/114886#M71666</guid>
      <dc:creator>johmut</dc:creator>
      <dc:date>2019-11-19T09:47:14Z</dc:date>
    </item>
  </channel>
</rss>

