Anderson Gama
My feedback
1 result found
-
1 vote
Thanks for the feedback. We will track this as a feature request.
Until source-side filtering is available in DriveLock, you should also be able to filter or discard unwanted events on the receiving SIEM/XDR side and only process the relevant event types, such as Event ID 473.
Anderson Gama
shared this idea
·