Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: FIM Alerts for PCI compliance

$
0
0

Unfortunately this is a conversation few are going to be able to contribute to significantly.  Here's what my suggestion would be:

 

Clarify what they mean when they say "alert".  To Support, an Alert is an e-mail notification.  If you need to get an e-mail or other active notification any time one of these file actions is taken you're going to be hard pressed to find a tool (or an exchange server) that will keep up with that volume.

 

However, if all they need is that an event is generated, logged, and monitored in some form then there's easier ways to accomplish this.  Firstly, if you have FIM set up and you're watching that directory, you already have the generation and logging in hand.  At that point you will likely want to demonstrate that your'e reporting on it or monitoring it in some fashion on an ongoing basis, but the auditor tends to have the final say on what they are looking for and what is good enough.


Viewing all articles
Browse latest Browse all 5385

Latest Images

Trending Articles



Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>