It would be nice to be able to use LEM as the IDS/IPS. But yes I don't feel it fits those requirements yet. That's what we do currently is send our log data to LEM and then use LEM to send us the appropriate triggers.
↧
It would be nice to be able to use LEM as the IDS/IPS. But yes I don't feel it fits those requirements yet. That's what we do currently is send our log data to LEM and then use LEM to send us the appropriate triggers.