We have many critical systems that getting an agent on is a horrendous task and anytime anything goes wrong it will be the agents fault. So I would LOVE to see an agentless pull. This could be similar to how SAM looks at logs. It can have credentials that log into the system, regardless of OS, and will go to the file you configure and grab the logs.
Since the technology is already there for SAM, I would think this would be doable.
Top Comments
I agree with you. Deploying agents all over the place is big issue. It is a big NO for Domain Controllers and the Server owners don't want anything installed in their servers. I worked with ArcSight before…
Many other companies are using RPC calls to pull the data. This is a HUGE need and I am getting alot of flak from my fellow engineers and managers over this. LogRythym is making fun of us and telling…
To add to this discussion thread: we ARE looking at this, we DO have something in the works, but we're NOT yet ready to call it "what we're working on" or put any kind of timeframe on it. I hope to have…