Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

CB Response: How to set up CB Response Cloud and Event Forwarder to a Securonix SIEM

CB Response: How to set up CB Response Cloud and Event Forwarder to a Securonix SIEM

Environment

  • CB Response Cloud: All versions
  • CB Response Sensors: All versions
  • Securonix SIEM:  All versions

Objective

How to request setting up Event Forwarder to a Securonix SIEM site with CB Response Cloud.

Resolution

  1. Contact VMware Carbon Black Customer Support and open a Support request
  2. Provide the following information:
    1. Target Securonix hostname or IP address:  name.here.securoinix.net
    2. TCP Ports available: 6514, 6515, 10514  (ports may vary)
    3. Certificates if applicable

Additional Notes

  • Probably no certificate information is required since TLS RIN is configured on SSL, but if they are in use, please attach to the Support case.

Labels (1)
Tags (2)
Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎09-09-2020
Views:
509
Contributors