This topic tells you how to configure VMware event sources for the Log Collector.
After completing this procedure, you will have...
- Configured a VMware event source.
- Modified a VMware event source.
Return to Procedures
Procedures
Configure a VMware Event Source
- In the Security Analytics menu, select Administration > Services.
- In the Services grid, select a Log Collector service.
- Click
under Actions and select View > Config.
- In the Event Sources tab, select VMware/Config from the drop-down menu.
The Event Categories panel displays the VMware event sources that are configured, if any. - In the Event Categories panel toolbar, click
.
The newly added event source type is displayed in the Event Categories panel. - Select the new type in the Event Categories panel and click
in the Sources toolbar.
The Add Source dialog is displayed. - Add a Name, Username and Password, modify any other parameters that require changes, and click OK.
Caution: If you need to enter the domain name as part of the Username, you must use a double-backslash as a separator. For example, if the domain|username is corp\smithj, you must specify corp\\smithj.
Modify a VMware Event Source
- In the Security Analytics menu, select Administration > Services.
- In the Services grid, select a Log Collector service.
- Click
under Actions and select View > Config.
- Select VMware/Config from the drop-down menu.
- In the Event Source list, select an event source and click
.
The Edit Source dialog is displayed.
- Modify the parameters that require changes and click OK.
Security Analytics applies the parameter changes to the selected event source.
You are here: VMware Collection Configuration Guide > Procedures > Step 1. Configure VMware Event Sources in Security Analytics