To elaborate, we've never really done any sort of centralized log collection and I feel like setting the log level to debugging is just too much data, but not sure where inbetween 1-7 would give us usable data. I don't have anything in particular I am looking for, just really playing around with a new SIEM solution right now.
No comments:
Post a Comment