Hi all,
We've started to try and integrate Cato with our Qradar platform. We are ingesting logs using the eventsFeed.py script.
This is working well, but I'm curious if I'm "missing" anything or need to integrate more events.
For example, could I add the "auditfeed.py" to the existing "eventsFeed.py" as I don't believe they pull the same events?