Skip to content

New filter for Safeguard Privileged Passwords #2628

@evetovicsm

Description

@evetovicsm

What is the sc4s version?
3.32.0

Is there a pcap available? If so, would you prefer to attach it to this issue or send it to Splunk support?
Available. I will attach to this issue. The pcap is zipped.

What the vendor name?
OneIdentity

What's the product name?
Safeguard for Privileged Passwords

If you're requesting support for a new vendor, do you have any preferences regarding the default index and sourcetype for their events?

Do you have syslog documentation or a manual for that device??
https://support.oneidentity.com/one-identity-safeguard-for-privileged-passwords/kb/4259986/is-it-possible-to-get-a-list-of-potential-syslog-events-alerts-and-the-syslog-fields-that-are-sent

Feature Request description:
Need to add these sourcetypes to sc4s vendor

Do you want to have it for local usage or prepare a github PR?
NA

Metadata

Metadata

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions