This post describes how to configure LogRhythm Agnet to collect the Symantec SEPM logs through MS SQL DB.
Method 1 – Syslog Forwarding
This is traditional way to forward logs from SEPM to Syslog servers, such as ArcSight, Splunk, Qradar, LogRhythm, etc.
Note: SEPM does not support multiple syslog servers. Only one host can be configured and supported.
Method 2 – ODBC Connection