Ingesting eMaximo logs into Sentinel or Syslog server

Jones, Charles (InfoSec) 21 Reputation points
2022-10-04T15:59:46.627+00:00

I'm trying to ingest eMaximo (IBM Maximo) into our Sentinel SIEM. I cannot find any documentation regarding it. Has anyone setup ingesting logs for eMaximo into Sentinel?

Azure Logic Apps
Azure Logic Apps
An Azure service that automates the access and use of data across clouds without writing code.
3,557 questions
Microsoft Security | Microsoft Sentinel
0 comments No comments
{count} votes

Accepted answer
  1. David Broggy 6,371 Reputation points MVP Volunteer Moderator
    2022-10-04T20:54:50.793+00:00

    Hi @Jones, Charles (InfoSec) ,
    My approach with IBM products it to search the Q&A forums for how they connect to QRadar.
    And in the case of eMaximo I couldn't find any connectivity documentation for QRadar.
    So my next suggestion would be to open a ticket with the vendor and ask them if they support any logging methods.
    Hopefully it supports syslog, then it's a no-brainer.
    If it's an api you'd need to create an http connector using LogicApps and you'd need a good understanding of the api.

    Sorry if that's not the answer you were looking for but it's the best I can offer w/o having access to a good knowledgebase and/or documentation.

    Best regards.

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.