Proofpoint Enterprise Protection und Enterprise Privacy

IBM QRadar DSM for Proofpoint Enterprise Protection und Enterprise Privacy können Ereignisse von Ihren Proofpoint Enterprise Protection-und Enterprise Privacy DSM-Servern erfassen.

In der folgenden Tabelle sind die Spezifikationen für Proofpoint Enterprise Protection and Enterprise Privacy DSM aufgeführt:
Tabelle 1. Proofpoint Enterprise Protection and Enterprise Privacy DSM-Spezifikationen
Spezifikation Wert
Hersteller Proofpoint
DSM-Name Proofpoint Enterprise Protection/Enterprise Privacy
Name der RPM-Datei DSM-Proofpoint_Enterprise_Protection/Enterprise_Privacy-QRadar_version-build_number.noarch.rpm
Unterstützte Versionen

V7.02

V7.1

V7.2

V7.5

V8.0

Protokoll

Syslog

Protokolldatei

Aufgezeichnete Ereignistypen

System

Klassifizierung von E-Mail-Sicherheitsbedrohungen

E-Mail-Prüfung und -Verschlüsselung

Automatisch erkannt? Nein
Enthält Identität? Nein
Angepasste Eigenschaften einschließen? Nein
Weitere Informationen Proofpoint-Website (https://www.proofpoint.com/us/solutions/products/enterprise-protection)

Führen Sie die folgenden Schritte aus, um das Proofpoint Enterprise Protection and Enterprise Privacy DSM mit QRadarzu integrieren:

  1. Wenn automatische Updates nicht aktiviert sind, laden Sie die neueste Version von Proofpoint Enterprise Protection und Enterprise Privacy DSM RPM von der IBM® Support Website herunter und installieren Sie sie auf Ihrem QRadar Console.
  2. Konfigurieren Sie für jede Instanz von Proofpoint Enterprise Protection und Enterprise Privacy Ihre Proofpoint Enterprise Protection-und Enterprise Privacy DSM-Appliance, um die Kommunikation mit QRadarzu aktivieren.
  3. Fügen Sie eine Proofpoint Enterprise Protection-und Enterprise Privacy-Protokollquelle auf Ihrem QRadar Consolehinzu.