ExtraHop
ExtraHop includes ExtraHopCompiledNormalizer that normalizes Audit and CEF logs from ExtraHopNDR.
Release Details
Version: 6.0.0
Release date: May 22, 2024
Supported On: Logpoint v7.0.0 or later
SHA 256: 9186b3ed24df542833e1ce212d50a0d4c8113ae45fbf9f280f097adb5ae8c2cd
Download
Installation
- Download the .pak file from the Download link above.
- Go to Settings >> System Settings from the navigation bar and click Applications.
- Click Import.
- Browse to the downloaded .pak file.
- Click Upload.
Configuration
- Configure a Repo and Routing Policy for ExtraHopNDR logs.
- Add a new Normalization policy with ExtraHopCompiledNormalizer. You must configure a date format for ExtraHopCompiledNormalizer using CNDP. Go to CNDP to learn more.
- Configure a Processing policy with the previously created Normalization policy.
- Add ExtraHop as a device in Logpoint.
- Configure a Syslog Collector using the previously created Processing policy.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.