Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

App Control: Syslog Parsing Errors After Upgrade to 8.5.2

App Control: Syslog Parsing Errors After Upgrade to 8.5.2

Environment

  • App Control Server: 8.5.2 (Formerly CB Protection)

Symptoms

Parsing of syslog is incorrect after upgrade to 8.5.2

Cause

The Product name and vendor within the output has changed from CB Protection to Carbon Black App Control. The configuration may not be parsing the new values correctly

Resolution

Update your SIEM using the new configurations, in the Events Integration guide. Making note of the name change:
Vendor:
VMware_Carbon_Black

Product:

App_Control
 

https://community.carbonblack.com/t5/Documentation-Downloads/VMware-Carbon-Black-App-Control-Events-...


Labels (1)
Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎10-14-2020
Views:
920
Contributors