Sophos XG Technical Add-on

Splunk Community

Sophos XG Technical Add-on

Sophos XG Technical Add-on
This Add-on was designed to parse fields from Sophos XG firewall to CIM compliant fields for Network_Traffic, Intrusion_Detection, and Web data models. Onboard data as sourcetype=sophos:xg:syslog Data will sub-sourcetype to various sourcetypes such as sophos:xg:Firewall, sophos:xg:ContentFiltering, sophos:xg:IDP, etc.
0 topics and 0 replies mentioned Sophos XG Technical Add-on in
Latest Topics
No posts to display.
Latest Replies
No posts to display.
Top Topics
No posts to display.
My Topics
No posts to display.