does anyone have a data flow diagram on how snare talks etc.. new guy here .. thanks
Nothing official.. however the basic diagram is:
audit subsystem -> snare agent -> log collector (Snare Server / syslog / Siem ).
The open source agent can only send logs to one log collector, the enterprize agent can send the same log to multiple log collectors
Log in to post a comment.
does anyone have a data flow diagram on how snare talks etc.. new guy here .. thanks
Nothing official.. however the basic diagram is:
audit subsystem -> snare agent -> log collector (Snare Server / syslog / Siem ).
The open source agent can only send logs to one log collector, the enterprize agent can send the same log to multiple log collectors