Profile

Mr. Seungyeon han

Contact Details

My Content

1 to 2 of 2 total
Posted By Seungyeon han 01-25-2023 03:56
Found In Egroup: Imperva Cyber Community
\ view thread
Hello. If you run monitor > alerts > save as alert csv, I can see the fields as below. Alert No. Num. of Events Alert Description Alert Start Time Alert End Time Alert Flag Alert Type Immediate Action Server Group Session ID Severity Source IP URL User Agent User Name (DB) User Name (Applicative) ...
Posted By Seungyeon han 01-23-2023 02:21
Found In Egroup: Imperva Cyber Community
\ view thread
hello? I'm sending detection events from securesphere to splunk using syslog. The syslog settings are: CEF:0|Imperva Inc.|SecureSphere|$(SecureSphereVersion)|$(Alert.alertType)|#cefEscapeMessage($(Alert.alertMetadata.alertName))|$(Alert.severity)|act=$(Alert.immediateAction) dst=$(Event.destInfo.serverIp) ...