Click HERE to see how Saviynt Intelligence is transforming the industry. |
10/09/2023 11:06 PM
Please suggest the best way to integrate audit & application logs from Saviynt to Sumologic.I found these documents:
- https://docs.saviyntcloud.com/bundle/EIC-Admin-v23x/page/Content/Chapter20-EIC-Integrations/Saviynt-...
- https://docs.saviyntcloud.com/bundle/SSM-Admin-v55x/page/Content/Chapter19-EIC-Integrations/Saviynt-...
- https://docs.saviyntcloud.com/bundle/Splunk-Guide/page/Content/Understanding-the-Integration-between...
- https://docs.saviyntcloud.com/bundle/Splunk-Guide/page/Content/Managing-Application-Audit-Logs.htm
However, there are some questions.
- What is the difference between first two options?
- If the first options is considered, how can we forward the logs from Saviynt to Sumologic without running any script or cron? Is there any way, Saviynt can proactively push the logs to Sumologic in real time.
- If the second option is considered with S3 bucket options, who can provide :
CustomerS3BucketNameSaviynt AWS Account 12 Digit IDSaviynt NAT IP ADDRESS1
Solved! Go to Solution.
10/11/2023 09:52 AM
Only Audit logs can be sent from Saviynt to other tools. ( Application logs are not sent from Saviynt )
You can follow the SIEM integration guide fully for question 2 and its based on analytics the logs are pushed.
Saviynt aws and details will be provided by saviynt infra team, you can raise a support team for the same.
Thanks
Darshan