Data loss is a critical concern during network outages or SIEM maintenance, as it can
compromise security monitoring and strict compliance obligations.
Enterprise Data Loss Prevention (E-DLP) now ensures the integrity and continuity of your audit
trail by buffering critical
incident and audit syslogs. Syslog
Buffering and Resend guarantees that you never lose crucial incident and audit logs
generated during periods of system disconnection.
When Enterprise DLP detects a Syslog connection failure to your third-party
security information and event management (SIEM), Security Orchestration, and
Response (SOAR), or third-party automated ticketing system, it immediately begins
storing logs in an encrypted, tamper-resistant local buffer. Once connectivity is
restored, Enterprise DLP automatically begins forwarding the complete set of
buffered syslogs to your external systems SIEM, SOAR, or third-party automated
ticketing system.
Syslog Buffering and Resend is essential for data security administrators who must
maintain strict compliance requirements and preserve complete audit trails for
forensic investigations. Notifications regarding connection loss and restoration are
provided directly through Enterprise DLP on Strata Cloud Manager, ensuring
administrators are always aware of the system status. With Enterprise DLP, data
security teams can rely on continuous security monitoring, even when facing external
network disruptions or temporary server maintenance.