Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Intrusion Detection data model: Is host not really a tag, but treated as such with regard to the data model?

$
0
0
This is more of question for my understanding... In the examples section of CIM Add-on manual (for OSSEC) there is a statement that the Intrusion Detection data model requires the tags ids, attack, and host If you look at the intrusion detection data model, the constraint is `ids_type="host"` So host is not really a tag, but it is treated as such with regards to the data model? thanks

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>