Delphix Products

 View Only
  • 1.  Sending audit logs to SIEM

    Posted 03-30-2021 02:42:00 PM
    I saw an old post on this topic but it didn't really help. Is it still correct that there is no way to have audit logs shipped to SIEM in real time?

    ------------------------------
    Murray Penno
    Project Manager
    ANZ Bank New Zealand
    ------------------------------


  • 2.  RE: Sending audit logs to SIEM
    Best Answer

    Posted 03-30-2021 04:08:00 PM
    Hello,

    Delphix offers several methods for monitoring platforms to receive information from the Delphix Engine about certain activities:

    Splunk: https://docs.delphix.com/docs/configuration/monitoring-and-log-management/splunk-integration
    Forward audit logs to a central audit server using syslog techniques: https://docs.delphix.com/docs/security/audit-logs
    SMTP Alerts: https://docs.delphix.com/docs/configuration/monitoring-and-log-management/email-smtp-alert-notifications
    SNMP: https://docs.delphix.com/docs/configuration/monitoring-and-log-management/configuring-snmp

    If there is something else you are looking for, if you can describe it in more detail, I can search our outstanding feature requests.

    Thanks,
      Neal

    ------------------------------
    Neal Stack
    Senior Member of Technical Staff
    Delphix
    ------------------------------



  • 3.  RE: Sending audit logs to SIEM

    Posted 03-30-2021 04:15:00 PM

    Hi Murray,
    If you pursue the Splunk path, there is an entire library of info here in the community, also.

    Thanks,

    Michael​



    ------------------------------
    Michael Torok
    Director of Knowledge and Community Management
    Delphix
    ------------------------------