Planning


The BMC Defender SIEM Correlation Server product (also known as BMC Defender Server) provides a method of collecting security information contained in log messages generated by network devices and applications. These messages are then correlated into understandable threads, alerts, and actions that are used to generate actionable tickets.


In addition to serving as the basis for deployment, this section includes best-practices information. Although your enterprise might not precisely fit the deployment strategies listed in this section, you can develop a strategy through a combination of the methodologies referenced.This section provides information about the following topics: 


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*