Trend Micro Apex Central
Configure the Trend Micro Apex Central syslog connector in Radiant Security to forward Apex Central logs for AI triage.
Last updated
Was this helpful?
Configure the Trend Micro Apex Central syslog connector in Radiant Security to forward Apex Central logs for AI triage.
Connect Trend Micro Apex Central to Radiant Security over syslog to forward Apex Central logs for AI triage. This guide covers adding the data connector in Radiant and configuring Apex Central to forward logs to a Radiant Security Agent.
Log in to Radiant Security.
From the navigation menu, click Settings > Data Connectors, then click + Add Connector.
Search for and select Trend Micro Apex Central (syslog), click Data Feeds, then click Credentials.
In Credential Name, enter an identifiable name (e.g., Trend Micro Apex Central Credentials).
In Connector tag, enter any value. This value salts the token generated in the next step.
Click Add Connector.
Copy the Token value or download the token file. You need this token to complete the syslog configuration in Apex Central.
Click Done to save your changes.
Under Syslog Settings, enter the following values:
Server Address: {the IP address configured for the Radiant Security Agent}.
Port: {the port configured for the Radiant Security Agent}.
Protocol: SSL/TLS.
Use server certificate: clear this option if it is selected.
Format: CEF.
Frequency: 0 hours, 1 minute.
Log Type: select Security Logs from the drop-down, then select all checkboxes.
If you do not know which IP address or port to use, contact your Radiant Security customer success representative.

After Trend Micro Apex Central begins forwarding, confirm alerts are reaching Radiant.
In Radiant, navigate to Log Management.
Filter by rs_connectorType:"trendmicro_apex_central".
Confirm recent alerts appear.
Allow several minutes for alerts to be parsed, indexed, and available for search.
Last updated
Was this helpful?
Was this helpful?