...
CyberArk Enterprise Password Vault, part of the CyberArk Privileged Account Security Solution, enables organizations to secure, manage and track the use of privileged credentials whether on premise or in the cloud, across operating systems, databases, applications, hypervisors, network devices and more. The product is built on the CyberArk Shared Technology Platform, delivering scalability, high availability and centralized management and reporting.
Device Information
Entity | Particulars |
---|---|
Vendor Name | CyberArk |
Product Name | Enterprise Password Vault (Now comes under Privileged Access Manager ) |
Type of Device | Hosted |
Collection Method
Log Type | Ingestion label | Preferred Logging Protocol - Format | Log Collection Method |
---|---|---|---|
Cyberark Privilege Cloud | CYBERARK_PRIVILEGE_CLOUD | Syslog - CEF | CyberHub |
Port Requirements
Source | Destination | Port |
---|---|---|
CyberArk Enterprise Password Vault | CyberHub | 6514 (TLS) |
Device Configuration
To Configure CyberArk EPV to Collect Logs
...
a. PrivateArk Client >Tools > Options > Advanced > Log Configuration. For this modification, one must be logged in with Administrator Account. Recommendation is to select all 15 options starting from General Events to Detailed Communication Events.
...
Stop and Start Vault for changes to take effect.
...
To configure CyberArk Privilege Cloud to collect logs
...
Parameters required from customer for Integration.
Property | Default Value | Description |
---|---|---|
IP Address | CyberArk Enterprise Password Vault IP address | Hostname or IP address of the device which forwards logs to the CyberHub |