First Class
ArchivedThe FirstClass application normalizes FirstClass events and enables you to analyze the data using alerts and pre-set dashboard views. You can further customize the dashboard and searches to perform in-depth analysis.
Release Details
Package Details
- Dashboard Package
- LP_FirstClass
- Alert Packages
- LP_FirstClass Failed Login Attempt
- LP_FirstClass Failed Password Change Attempt
- Compiled Normalizer
- FirstClassCompiledNormalizer
- Search Package
- FirstClass
Enhancement
A minor update has been done in the application’s normalizer for better signature handling.
Installation
Follow these steps to install the FirstClass v5.0.1 application:
- Download the FirstClass package from the Download section above.
- Add FirstClass as the required device in LogPoint.
- Create a collection policy with the Syslog collector and appropriate processing policy.
- Assign the policy to the device.
- Add the dashboard.
Past Release
For LogPoint v6.0.0 to v6.6.6 ▾
Enhancement
A minor update has been done in the application’s normalizer for better signature handling.
Log Format
Expected Log Format
The tab-separated standard log format
Log Sample
20170216 095116 61 Password aa8018 172.25.14.250:7901 abc af & 123acs UG 1035
To export data to LogPoint, use Syslog collector on port 514 on the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.