sophos / Sophos-Central-SIEM-Integration

Simple integration script for 3rd party systems such as SIEMs. Offers command line, file or syslog output in CEF, JSON or key-value pair formats.
121 stars 70 forks source link

time difference between the Log Source Time and the Storage time #85

Open Mathangee opened 1 year ago

Mathangee commented 1 year ago

Hello, We have been using this script for about 3 years, and we recently encountered a problem: We have a time difference between the Log Source Time and the Storage time. We are receiving offenses that were received a year ago or more. Have you ever encountered this problem? Do you have a solution? Log source time.