Proofpoint Enterprise Protection and Enterprise Privacy

IBM QRadar DSM for Proofpoint Enterprise Protection and Enterprise privacy peut collecter des événements à partir de vos serveurs Proofpoint Enterprise Protection and Enterprise Privacy DSM.

Le tableau suivant identifie les spécifications pour le DSM Proofpoint Enterprise Protection and Enterprise Privacy :
Tableau 1. Spécifications du DSM Proofpoint Enterprise Protection et Enterprise Privacy
Spécification Valeur
Fabricant Proofpoint
Nom du DSM Proofpoint Enterprise Protection/Enterprise Privacy
Nom du fichier RPM DSM-Proofpoint_Enterprise_Protection/Enterprise_Privacy-QRadar_version-build_number.noarch.rpm
Versions prises en charge

V7.02

V7.1

V7.2

V7.5

V8.0

Protocole

Syslog

Fichier journal

Types d'événements enregistrés

Système

Classification des menaces de sécurité par email

Audit et chiffrement des courriers électroniques

Reconnu automatiquement ? Non
Inclut l'identité ? Non
Inclut les propriétés personnalisées ? Non
Informations complémentaires Site Web Proofpoint (https://www.proofpoint.com/us/solutions/products/enterprise-protection)

Pour intégrer le DSM Proofpoint Enterprise Protection and Enterprise Privacy à QRadar, procédez comme suit :

  1. Si les mises à jour automatiques ne sont pas activées, téléchargez et installez la version la plus récente du RPM Proofpoint Enterprise Protection et Enterprise Privacy DSM à partir du IBM® sur votre QRadar Console.
  2. Pour chaque instance de Proofpoint Enterprise Protection and Enterprise Privacy, configurez votre dispositif de DSM Proofpoint Enterprise Protection and Enterprise Privacy pour activer la communication avec QRadar.
  3. Ajoutez une source de journal Proofpoint Enterprise Protection and Enterprise Privacy à QRadar Console.