top of page

Lieberman Software CEF Certified Configuration Guide

  • Writer: Pavan Raja
    Pavan Raja
  • Apr 8, 2025
  • 1 min read

Summary:

This document serves as a guide for configuring ERPM (Enterprise Random Password Manager) to work seamlessly with ArcSight, specifically for event collection and forwarding purposes. It provides detailed steps on how to set up the connector, including selecting appropriate event filters, configuring output type, specifying the server name or IP address of the ArcSight receiver, and enabling CEF format for data transmission. The guide also covers field mappings from vendor-specific event definitions to ArcSight's predefined data fields, emphasizing the use of shost/dhost and suser/duser as per ArcSight configuration guidelines. This setup is aimed at enhancing security by managing privileged accounts through a CEF-compatible format compatible with the ArcSight system, facilitating efficient event collection and forwarding.

Details:

This document provides a configuration guide for setting up ERPM (Enterprise Random Password Manager) to work with ArcSight for event collection and forwarding. The guide outlines how to configure the connector, including selecting event filters, configuring output type, specifying the server name or IP address of the ArcSight receiver, and enabling CEF format for data output. It also details field mappings from vendor-specific event definitions to ArcSight data fields, explaining use of shost/dhost and suser/duser as per ArcSight configuration instructions. The guide is intended for administrators looking to secure and manage privileged accounts through this utility by forwarding events in a CEF format compatible with the ArcSight system.

Disclaimer:
The content in this post is for informational and educational purposes only. It may reference technologies, configurations, or products that are outdated or no longer supported. If there are any comments or feedback, kindly leave a message and will be responded.

Recent Posts

See All
Zeus Bot Use Case

Summary: "Zeus Bot Version 5.0" is a document detailing ArcSight's enhancements to its Zeus botnet detection capabilities within the...

 
 
 
Windows Unified Connector

Summary: The document "iServe_Demo_System_Usage_for_HP_ESP_Canada_Solution_Architects_v1.1" outlines specific deployment guidelines for...

 
 
 

Comments


@2021 Copyrights reserved.

bottom of page