HashiCorp Vault

IBM QRadar DSM for HashiCorp Vault collects event logs from HashiCorp Vault platform.
To integrate HashiCorp Vault with QRadar, complete the following steps:
  1. If automatic updates are not enabled, RPMs are available for download from the IBM® support website. Download and install the most recent version of the following RPMs on your QRadar® Console.
    • HashiCorp Vault DSM RPM
  2. Configure HashiCorp Vault server to send events QRadar.
  3. If QRadar does not automatically detect the log source, add a HashiCorp Vault log source on the QRadar Console. For more information, see: Configuring HashiCorp Vault to communicate with QRadar.