Skip to main content

Impelix IMPACT Integration
with Broadcom Symantec AV

The Impelix IMPACT platform ingests telemetry from your all your security products as well as third-party feeds (threat intelligence, cybersecurity risk, business resilience intelligence, etc.) and delivers event correlation, security control efficacy, and compliance monitoring.

We believe that the more data ingested into IMPACT, the more context you will have regarding security incidents, which will allow effective and efficient incident response and compliance management. Therefore, we encourage and facilitate connecting vendor products telemetry with Impelix IMPACT platform.

Broadcom Symantec AV

Symantec AV

To export log data to a Syslog server

  1. In the console, click Admin.
  2. Click Servers.
  3. Click the local site or remote site that you want to export log data from.
  4. Click Configure External Logging.
  5. On the General tab, in the Update Frequency list box, select how often to send the log data to the file.
  6. In the Master Logging Server list box, select the management server to send the logs to.
  7. Check Enable Transmission of Logs to a Syslog Server.
  8. Provide the following information:
    1. Syslog Server
      Type the IP address of the Impelix IMPACT server
    2. Destination Port
      Use 514/tcp
    3. Log Facility
      Use 0
  9. On the Log Filter tab, check which logs to export.
  10. Click OK.
  11. Flip back over to the Impelix IMPACT “Search” interface and search for the IP address of the Symantec AV Server. An entry should be listed on the Syslog tab. Reference: https://support.symantec.com/en_US/article.HOWTO81169.html

The Next Evolution of SIEM

Avoid alert noise, high cost of data ingestion, and incident response complexity.
Move to our Automated SecOps and Enterprise Risk Management Platform.
✔︎ Respond     ✔︎ Investigate     ✔︎ Prevent     ✔︎ Comply
Schedule a Demo