CiscoAMP
StandardCiscoAMP, now Cisco Secure Endpoint, enables you to fetch event logs from a Cisco Advanced Malware Protection (AMP) for Endpoints deployment using the Cisco AMP for Endpoints API - Version 1.
Enhancements
PLUG-11801
You can now configure CiscoAMP from Log Sources , which provides a centralized user interface for all the configurations of log collection .
KB-24039
Added the LP_CISCO AMP Overview dashboard. To learn more, go to LP_CISCO AMP Overview .
Bug Fix
The following issue has been resolved:
Installation
Follow these steps to install the CiscoAMP v5.2.0 application in LogPoint:
- Download the CiscoAMP_5.2.0.zip file provided in the Download section above.
- Extract the zip file to obtain the CiscoAMP_5.2.0.pak file.
- Install the application by importing the pak file to LogPoint under Settings >> System >> Applications.
- Download the CiscoAMP_5.2.0.zip file provided in the Download section above.
- Extract the zip file to obtain the CiscoAMP_5.2.0.pak file.
- Upload the CiscoAMP pak file to the Director Console from the Assets page.
- Select the LogPoints from the Install page.
- Review your changes on the Confirmation page and click Install .
- Download the CiscoAMP_5.2.0.zip file provided in the Download section above.
- Extract the zip file to obtain the CiscoAMP_5.2.0.pak file.
- Upload the CiscoAMP_5.2.0.pak file to the Fabric Storage by selecting Upload API .
- Install the plugin in the Fabric-enabled LogPoint by selecting Install API .
Past Releases
CiscoAMP v6.1.0 ▾
Enhancements
PLUG-11801
You can now configure CiscoAMP from Log Sources , which provides a centralized user interface for all the configurations of log collection .
KB-24039
Added the LP_CISCO AMP Overview dashboard. To learn more, go to LP_CISCO AMP Overview .
Bug Fix
KB-1645164882
The fields event_type , detection , app_path , hostname and external_ip were not correctly normalized by CiscoAMPNormalizer when a custom normalization package was used.
CiscoAMP v5.2.0 ▾
Bug Fix
The following issue has been resolved:
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.