The data source is behind in processing data (red flag in Enterprise Security Manager)
Last Modified: 2022-11-15 11:32:57 Etc/GMT
Affected Products
Languages:
This article is available in the following languages:
Trellix CEO, Bryan Palma, explains the critical need for security that’s always learning.
As per Gartner, "XDR is an emerging technology that can offer improved threat prevention, detection and response."
Trellix announced the establishment of the Trellix Advanced Research Center to advance global threat intelligence.
Trellix Advanced Research Center analyzes threat data on ransomware, nation-states, sectors, vectors, LotL, MITRE ATT&CK techniques, and emails.
As of May 14, 2024, Knowledge Base (KB) articles will only be published and updated in our new Trellix Thrive Knowledge space.
Log in to the Thrive Portal using your OKTA credentials and start searching the new space. Legacy KB IDs are indexed and you will be able to find them easily just by typing the legacy KB ID.
The data source is behind in processing data (red flag in Enterprise Security Manager)
Technical Articles ID:
KB87063
Last Modified: 2022-11-15 11:32:57 Etc/GMT Environment
SIEM Enterprise Security Manager (ESM) 11.x SIEM Event Receiver (Receiver) 11.x Problem
You see a red flag in the ESM user interface with the following message:
Cause
This issue is intermittent, and occurs when there are too many events to process.
SolutionThis flag is informational and alerts you that the parser or filter is taking longer than expected to process queued events. This issue typically happens when more than 500 files are present in
NOTE: The value
To help determine the status of the parsing jobs, perform the steps below:
If your output contains the text
If you don't see any instances of
To contact Technical Support, go to the Create a Service Request page and log on to the ServicePortal.
Affected ProductsLanguages:This article is available in the following languages: |
|