Tying to setup forwarding of logs in a dedicated Repository to SIEM solution
Can a collection in Deployment Manager be configured to forward logs gathered by a traditional gathering task/job and kept in a dedicated Repository? Repository Viewer confirms that the dedicated Repository has the logs but cannot get these logs to be forwarded to a SIEM solution.
Forwarding function does not work with traditional gathering, only with real-time gathering, so only real-time collections will be forwarded to a SIEM solution.
Configure the gathering and forwarding process using a Real-Time Collection and a dedicated Repository in Deployment Manager.