Uploaded by emilviorelm

McAfee SIEM - FAQ

advertisement
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
Community Home
Enterprise
Page 1 of 11
Consumer
Community Help
☰
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
Page 2 of 11
This is the SIEM central console and
includes the enterprise database. Nearly all
configuration, management, reporting and
Required
workflows are done here.
ERC (Event
Receiver)
ACE (Advanced
Correlation
Highly recommended
Engine)
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
Page 3 of 11
ELM (Enterprise
Log Manager)
ADM (Application
Data Monitor)
DEM monitors database transactions from
the network, removing the need to install a
DEM (Database
component on databases to monitor them.
Event Monitor)
It adds the ability to see local/internal
Optional
database events as well as prevent
unwanted database activity.
McAfee Direct Attached Storage provides
high performance storage array for ESM
Storage
and/or ELM, redundant architecture with
RAID controller, mirrored cache, and IO
multi-pathing.
GTI (Global
Threat
Intelligence)
This adds McAfee's GTI Reputation
Optional but highly recommended to
information to help assess event risk. This
quickly identify communications that put
is a license-based component that does
your environment at risk and that are a sure
not require any additional hardware
sign of compromise attempts.
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 4 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 5 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 6 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 7 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 8 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
Page 9 of 11
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
Page 10 of 11
New to the forums or need help
finding your way around the
forums? There's a whole hub of
community resources to help you.
• Find Forum FAQs
• Learn How to Earn Badges
• Ask for Help
Go to Community
Help
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
2/12/2020
McAfee Support Community - McAfee SIEM - FAQ - McAfee Support Community
Page 11 of 11
Thousands of customers use the
McAfee Community for peer-topeer and expert product support.
Enjoy these benefits with a free
membership:
• Get helpful solutions from
McAfee experts.
• Stay connected to product
conversations that matter to
you.
• Participate in product groups
led by McAfee employees.
Join the Community
Consumer Support | Enterprise
Support | McAfee.com
Corporate Headquarters
2821 Mission College Blvd.



Santa Clara, CA 95054 USA
Legal | Privacy | Copyright © 2019
McAfee, LLC
https://community.mcafee.com/t5/Documents/McAfee-SIEM-FAQ/ta-p/550598
2/12/2020
Download