Make siem logging output into a consumable form

What is a one sentence summary of your feature request?

Siem logging should allow for automation systems to read. Currently it is a manual report.

Please describe your idea in detail. What is your problem, why do you feel this idea is the best solution, etc.

Siem logging is an audit requirement for most applicaitons in enterprise level organizations. This also needs to be handled via automation (email attachement is not considered automation by most systems). Currently the only way for this to be consumed is for an end user to run the report, download it, then place it where another system can import it. We, and many other of your clients, need a solution of either a) send csv report to a share/drive for consumption, allow API data pull, or provide a MongoDB query to extract the data.

How do you currently solve the challenges you have by not having this feature?

We can’t - we will have to file a finding.

Hey Jim,

Good to see you here! I totally understand your desire for automation here and we have been working towards this since our last discussion. You may have seen in the v8.1 release notes that we have announced a beta program for our API client library. The idea behind the client library is to make it very easy for customers to automate processes in a standard and supported way. This library will be the solution once we have built out the code for the reporting endpoints.

If you join the beta program you will be updated on early releases and have the opportunity to influence which endpoints we support first.

Either way I’ll keep you updated on our progress.

James

1 Like