湛揚科技知識庫


【WithSecure 唯思安全】EPP_Elements Connector事件轉寄設定方式

本文適用於以下產品:WithSecure Elements Endpoint Protection (EPP)

說明:

a. 登入WithSecure Elements管理平台 → MANAGEMENT→ 組織設定

   →API用戶端,點擊 [Add new]

b. 在 [Description] 欄位輸入描述資訊後,點擊 [Add]

c. 新增一個名為api-access.properties的檔案

d. 將 Client ID 及 Secret 複製到api-access.properties,檔案裡的內容格式如下:

apiUrl = https://api.connect.withsecure.com

clientId = fusion_1602bba8f2dd4fd6bc2d9cd5

secret = a765317960bebf52a7213b8a6033xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

e. 然後勾選 [ I have copied and stored the secret] 及點擊 [Done]

f. 將修改好的api-access.properties放置到以下路徑:

  C:\ProgramData\WithSecure\NS\ElementsConnector\data\

  ※ 若 Elements Connector 安裝在 Linux 上,則路徑在 /var/opt/f-secure/fspms/data/

g. 重啟WithSecure Elements Connector服務

※ 若 Elements Connector 安裝在 Linux 上,則輸入指令 ./etc/init.d/fsconnector restart

h. 到WithSecure Elements管理平台 → 安全設定→ 設定檔 → 針對連接器,

   編輯指定的設定檔

i. 在設定檔 →基礎 → 事件轉寄,啟用事件轉寄及設定Syslog Server的位址、

  訊息格式及通訊協定,設定完成後,點擊 [儲存設定檔]

j. 驗證事件是否有成功轉寄至Syslog Server

聯絡資訊

如需更多資訊,請與湛揚技術服務中心聯繫,我們將竭誠為您服務!

服務信箱:support@t-tech.com.tw 客服專線:(02)2515-1599 週一至週五 (不含國定假日) 09:00~12:30;13:30~18:00