EventLog Analyzer for FireEye log management
The more logs you feed your log management tool, the better it gets. That's why you should ensure that no log source escapes from your log management tool's radar. You should also take extra care with endpoint protection solutions; these solutions are often treasure troves of information on what's happening in your network.
With enterprises more commonly adopting policies like bring your own device (BYOD), endpoint protection solutions have become a must. FireEye is a frontrunner in network security solutions—their endpoint security solution—Endpoint Security—is popular among many enterprises.
EventLog Analyzer offers out-of-the-box support for logs from all major network security solutions, including FireEye Endpoint Security. EventLog Analyzer covers all your bases with support for both agentless and agent-based methods of log collection.
From a network security perspective, configuring FireEye's endpoint security solution in EventLog Analyzer has two important benefits:
FireEye reports: EventLog Analyzer collects and analyzes logs from FireEye Endpoint Security to break the data down into a human-readable form, and present it in graphical reports.
FireEye log correlation: FireEye Endpoint Security collects comprehensive information from endpoint devices, which can be correlated with other logs in the network to detect patterns and foresee attacks.