本文適用於以下產品:WithSecure Elements Endpoint Protection (EPP)
說明:
a. 登入WithSecure Elements管理平台 → MANAGEMENT→ 組織設定
→API用戶端,點擊 [Add new]

b. 在 [Description] 欄位輸入描述資訊後,點擊 [Add]

c. 新增一個名為api-access.properties的檔案
d. 將 Client ID 及 Secret 複製到api-access.properties,檔案裡的內容格式如下:
apiUrl = https://api.connect.withsecure.com
clientId = fusion_1602bba8f2dd4fd6bc2d9cd5
secret = a765317960bebf52a7213b8a6033xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx

e. 然後勾選 [ I have copied and stored the secret] 及點擊 [Done]
f. 將修改好的api-access.properties放置到以下路徑:
C:\ProgramData\WithSecure\NS\ElementsConnector\data\
※ 若 Elements Connector 安裝在 Linux 上,則路徑在 /var/opt/f-secure/fspms/data/

g. 重啟WithSecure Elements Connector服務
※ 若 Elements Connector 安裝在 Linux 上,則輸入指令 ./etc/init.d/fsconnector restart

h. 到WithSecure Elements管理平台 → 安全設定→ 設定檔 → 針對連接器,
編輯指定的設定檔

i. 在設定檔 →基礎 → 事件轉寄,啟用事件轉寄及設定Syslog Server的位址、
訊息格式及通訊協定,設定完成後,點擊 [儲存設定檔]

j. 驗證事件是否有成功轉寄至Syslog Server
