Hi, I am pretty new to qRadar...It seems like to show logs as not unknown log, I need to select a log source type.....how can I create our own Vendor Log Source Type? Can anyone point me to the documentation? I can see bunch of documents for creating log sources, but how do you create your own log source type? (does it require a Custom DSM)
Is there a script for this?
Thanks!
Stored procedure call 1 Answer
IBM Security QRadar SIEM - Sdk 5 Answers
Conditional display of injected interface elements? 2 Answers