-
Notifications
You must be signed in to change notification settings - Fork 120
Description
What is the sc4s version?
3.32.0
Is there a pcap available? If so, would you prefer to attach it to this issue or send it to Splunk support?
Available. I will attach to this issue. The pcap is zipped.
What the vendor name?
OneIdentity
What's the product name?
Safeguard for Privileged Passwords
If you're requesting support for a new vendor, do you have any preferences regarding the default index and sourcetype for their events?
Do you have syslog documentation or a manual for that device??
https://support.oneidentity.com/one-identity-safeguard-for-privileged-passwords/kb/4259986/is-it-possible-to-get-a-list-of-potential-syslog-events-alerts-and-the-syslog-fields-that-are-sent
Feature Request description:
Need to add these sourcetypes to sc4s vendor
Do you want to have it for local usage or prepare a github PR?
NA