RSA Admin

Help Setting Up A Corr Alert Using McAfee EPolicy Orchestrator ODBC Source en 4.1 SP3

Discussion created by RSA Admin Employee on Feb 21, 2012
Latest reply on Feb 24, 2012 by RSA Admin
Okay, I got through the documentation with the DB team to set up the ODBC data source on an SQL Server for McAfee EPolicy Orchestrator, but not having any luck finding any documentation to assist the rest of the way with setting up a correlated alert for malicious code found on the network using the data that comes from this source. I have it configured for "multi-device". Has anyone else used this type of data source and had any luck setting up alerts for it??

Outcomes