Compatibility ELA and Snare

Compatibility ELA and Snare

I am evaluating eventlog analyzer in our environment.

I have Snare agent install on windows and I have verified it is sending syslog message on UDP 514 to the Eventlog Analyzer (by sniffing via Ethereal on the client).

However, it is not showing up as a host on the Eventlog Analyzer. Do I have to manually add the windows host? I would rather not do that to avoid setting up administrative access from ELA server for security reason.

In short, is ELA compatible with Snare agent? Snare agent is sending the syslog mesage, but it is not showing up as a host on ELA. My routers and Unix servers show up automatically on ELA.

Is is a requirement to manually add a Windows host? If it is, can a host be added without entering login credentials?

Thanks you for your help in advance.









                New to ADSelfService Plus?