locked
SIEM Integration With Microsoft Endpoint Configuration Manager RRS feed

  • Question

  • Is it possible to forward antivirus logs in Microsoft Endpoint Configuration Manager to a SIEM? If so, how is this done; via API or syslog?
    • Moved by Dave PatrickMVP Friday, November 6, 2020 3:18 PM looking for forum
    Friday, November 6, 2020 3:10 PM

Answers

  • I'd try asking for help over here.

    https://docs.microsoft.com/en-us/answers/products/mem

     

     



    Regards, Dave Patrick ....
    Microsoft Certified Professional
    Microsoft MVP [Windows Server] Datacenter Management

    Disclaimer: This posting is provided "AS IS" with no warranties or guarantees, and confers no rights.

    • Proposed as answer by Guido Franzke Monday, November 9, 2020 6:57 AM
    • Marked as answer by Guido Franzke Thursday, November 12, 2020 8:09 AM
    Friday, November 6, 2020 3:17 PM