CyberArk
CyberArk provides security for privileged accounts through password management. Logpoint aggregates and normalizes the CyberArk logs so you can analyze the information through dashboard. The CyberArk dashboard provides visualization of event details for privileged accounts, passwords, members added or removed, errors, actions performed on privilege account detected in your network. The dashboard enables you to monitor the security status of your organization. You can customize it to perform in-depth analysis by changing the data used in a search.
Key Information
You can configure a date format for the CyberArk compiled normalizers using CNDP.
Enhancement
Description | Issue ID | Reference ID |
---|---|---|
Added Syslog Collector based CyberArk log source template, simplifying the log source configuration process. To learn more, go to Creating Log Source via a Template. |
KB-23310 |
- |
Past Releases
CyberArk v5.0.4
Supported On: Logpoint v6.7.4 and later
Download: CyberArk_5.0.4.pak
SHA256: c4794e32210362052bf72b9822ce25bf5be7a3b5a0147efd6879a334b3d81c33
Enhancement
Description | Issue ID | Reference ID |
---|---|---|
Some fields of CyberArkCEF log were not normalized by CyberArkCEFCompiledNormalizer. |
KB-21931 | 76780 |
CyberArk v5.0.2
Supported On: LogPoint v6.7.4 and later
Download: CyberArk_5.0.2.pak
SHA256: 28f6756e0e49183a4830e8b6e2a317ca4c9cad26babb1e2951d870d8831204a2
Enhancements
- The value of the status field has been updated as Successful or Failure based on the message_id field for the CyberArkEPVCompiledNormalizer.
- The taxonomies of the following fields have been changed in the CyberArkCEFCompiledNormalizer:
Previously Used Field Name
|
Modified Field Name
|
---|---|
suser | user |
duser | target_user |
source_host | host |
CyberArk v3.5.0
Supported On: Logpoint v6.0.0 to v6.6.6
Download: CyberArk_3.5.0.pak
SHA256: 4e5b44fe564d13f790669da934e416d5eb550701e0f577639a1177bff8f97f62
Enhancement
A minor update has been done in the CyberArk’s normalizer for better signature handling.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.