Hi,
We currently run Endpoint Security and Control 10.0 on all our desktops and noticed that ArcSight has a Sophos connector. However, before we'd implement ArcSight I'd like to ask help finding specifically what Endpoint Security and Control 10 monitors - could Windows event logs monitored by Sophos? The documentation I've found is a bit light - and I don't want to suggest using ArcSight to collect info from Sophos if it won't collect all the data we need.
It would be great if we could use Sophos on each desktop and use the ArcSight to collect and analyze the Sophos data.
Thanks
Bill
This thread was automatically locked due to age.