Exabeam Product Categories The following table lists the out-of-the-box supported data sources grouped by product categories. Product Category Description Product File Systems and Object Storage netapp ontap nutanix unified storage access management 1password active directory federation services appsense application manager auth0 aws bastion azure ad identity protection banyan security cloud akamai duo access entrust identity enterprise f5 access policy manager fortiauthenticator jumpcloud microsoft intune okta adaptive mfa onelogin onewelcome cloud identity platform oracle access management ping identity pingfederate pingone secureauth idp secureauth login securid security access manager shibboleth simplesamlphp symantec siteminder symantec vip windows device registration service application security testing checkmarx contrast agent asset management apex one lanscope cat mcafee application control qualys assetview backup & recovery cds code42 crashplan rubrik cloud data management veeam browser isolation symantec fireglass cloud app security broker (casb) aws guardduty bitglass casb cisco cloudlock forcepoint casb lacework netskope casb netskope security cloud netskope webtx palo alto aperture skyhigh networks casb symantec cloudsoc cloud auditing aws cloudtrail azure ad activity logs azure ad sign-in logs azure container registry azure kubernetes service azure monitor gcp cloudaudit google cloud platform google workspace m365 audit logs microsoft 365 oracle public cloud saviynt cloud-native application protection platform (cnapp) microsoft defender for cloud prisma access prisma cloud tanium cloud platform wiz code management atlassian bitbucket atlassian github perforce communication platform anywhere365 cisco unified communications manager sametime slack teams zoom content delivery network (cdn) cloudflare cdn credential management adssp lastpass password manager pro specops password crm (customer relationship management) salesforce zendesk data warehouse aws redshift database amazon rds cassandra db confluent cloud db2 mariadb mongodb mssql mysql oracle database osquery postgresql progress database snowflake sonarg sybase teradata rdbms database security mcafee dam oracle audit vault and database firewall ddos mitigation services arbor cloud directory service auditing edirectory opendj openldap semperis dsp sunone dlp (data loss prevention) code42 incydr data protection suite (dps) digital guardian network dlp forcepoint dlp gtb technologies dlp guardium halcyon infowatch dlp mcafee dlp endpoint mcafee dlp prevent nightfall ai proofpoint dlp reveal rsa dlp symantec dlp document management pro.file dms edr (endpoint detection & response) carbon black ces carbon black edr cisco secure endpoint cortex xdr cylance optics cynet edr digital guardian endpoint protection endgame edr ensilo f5 websafe falcon fireeye endpoint security (hx) identity threat detection & response juniper advanced threat protection lumension malwarebytes endpoint detection and response malwarebytes incident response morphisec rsa ecat singularity platform symantec advanced threat protection tanium core platform email hcl notes hmailserver microsoft exchange postfix unix sendmail email security abnormal security armorblox barracuda email security gateway check point avanan cisco secure email clearswift secure email gateway cofense phishme fireeye email mps fireeye etp forcepoint email security gateway forcepoint email security hornetsecurity cloud email security services imsva inky anti-phishing ironport email kaspersky secure mail gateway mcafee email protection microsoft defender for office 365 mimecast secure email gateway mimecast targeted threat protection - url phisher proofpoint email protection proofpoint enterprise protection safesend smg symantec email security tessian cloud email security trend micro email security trend micro scanmail virtru endpoint auditing auditbeat azure devops azure monitor - vm insights bind dns event viewer - adfs event viewer - application event viewer - applocker event viewer - azureadpasswordprotection-dcagent event viewer - base-filtering-engine-connections event viewer - bfe resorce flows event viewer - bits-client event viewer - capi2 event viewer - certificateservicesclient event viewer - dfs-replication event viewer - dhcp-client event viewer - dhcp-server event viewer - directory-service event viewer - dnsclient event viewer - dnsserver event viewer - fileshareshadowcopyprovider event viewer - iphlpsvc event viewer - kernel-io event viewer - kernel-pnp event viewer - knownfolders event viewer - licensing-platform event viewer - liveid event viewer - networkprofile event viewer - nps event viewer - ntlm event viewer - openssh event viewer - powershell event viewer - printservice event viewer - remotedesktopservices event viewer - security event viewer - sentinelone event viewer - setup event viewer - system event viewer - taskscheduler event viewer - terminalservices-gateway event viewer - terminalservices-licensing event viewer - terminalservices-localsessionmanager event viewer - terminalservices-remoteconnectionmanager event viewer - windows firewall event viewer - winnat event viewer - winrm freebsd macos microsoft code integrity openvms solaris sysmon unix auditd unix dhcpd unix named unix z/os epp (endpoint protection) absolute dds advanced threat defense airlock allowlisting assetview azure atp blackberry protect bromium secure platform check point anti-malware check point endpoint security cybereason cylance protect deep security eset endpoint security gravityzone ibm security trusteer apex advanced malware protection kaspersky av kaspersky endpoint security for business malwarebytes endpoint protection mcafee endpoint security microsoft defender for endpoint officescan sophos endpoint protection symantec endpoint protection tls protect traps endpoint security manager vbcorp erp (enterprise resource planning) sap workday esignature (electronic signature) docusign esignature onespan sign signnow event management & forwarding adauditplus admanager plus azure event hub centrify audit and monitoring service citrix gateway connector for exchange activesync esector defesa logger logbinder for sharepoint logbinder for sql server microfocus arcsight quest change auditor for active directory quest change auditor for sql server quest intrust rangeraudit rsyslog search skyformation file integrity monitoring cimtrak imperva file activity monitoring nnt changetracker tanium integrity monitor file sharing box cloud content management citrix sharefile cohesity dataplatform dropbox egnyte emc isilon hpe 3par storeserv imanage kiteworks nasuni netapp netdocs synology nas file transfer axway gateway ftp goanywhere mft liquidfiles moveit transfer sftp titanftp firewall azure firewall barracuda cloudgen firewall check point ngfw cisco adaptive security appliance cisco firepower cisco meraki mx appliance cisco pix f5 advanced firewall manager forcepoint next-gen firewall fortigate fortinet enterprise firewall fortinet utm fw zscaler cloud huawei enterprise network firewall huawei unified security gateway iptables fw juniper srx series next-gen web application firewall nsx distributed firewall palo alto ngfw pfsense sangfor ngaf sonicwall sophos utm sophos xg firewall threatblockr watchguard honeypot botsink trapx human capital management (hcm) successfactors ics security nozomi networks guardian identity administration check point identity awareness identitynow imprivata micro focus netiq identity manager one identity manager sailpoint iiq securelink securityiq vmware identity manager xceedium infrastructure monitoring? nexthink infinity sysdig monitor insider risk management activtrak dtex intercept forcepoint insider threat logrhythm userxdr micro focus arcsight intelligence microsoft advanced threat analytics observeit proofpoint insider threat management iot security armis platform claroty netskope iot security ordr sce symantec critical system protection ip address management (ipam) bloxone ddi bluecat networks infoblox nios n3k nokia vitalqip ips (intrusion prevention system) alert logic managed detection and response cisco cognitive threat analytics cisco sourcefire damballa failsafe fidelis xps fireeye web mps ixia threatarmor managed isensor ips mcafee network security platform ossec proventia network ips sentinel ips snort suricata tippingpoint ngips zimperium mtd load balancer alteon amazon route 53 avi networks software load balancer aws elastic load balancer big-ip f5 lbr f5 local traffic manager kemp loadmaster managed detection and response (mdr) red canary managed detection and response vigilance managed security services symantec managed security services mobile management ibm mobile connect lookout mobileiron vmware airwatch ndr (network detection and response) awake security cisco secure cloud analytics cisco secure network analytics extrahop reveal(x) fidelis network verizon ndr vision one network fireeye network security (nx) network access control (nac) airespace wireless lan controller aruba clearpass policy manager cisco acs cisco ise cisco wlc forescout counteract microsoft network policy server packetfence portnox clear unifi access point viascope ipscan network analyzer cisco netflow cloudflare insights gigavue-hc2 irondefense microsoft dhcp log microsoft dns log network security group flow logs vectra cognito stream vpc flow logs zeek network automation and orchestration f5 big-ip dns msdhcp powerdns recursor network devices aruba wireless controller arubaos avaya ethernet routing switch cisco ios hpe comware junos os network infrastructure & management exos extremecloud iq ruckus zebra wlan management network performance monitoring nagios splunk stream network security policy management (nspm) algosec firewall analyzer firemon mcafee epolicy orchestrator panorama tufin securetrack operational technology security ctd other adaxes akamai guardicore apache subversion apache tomcat apc aruba mobility master attack analytics buildkite chcom cisco dhcp cisco ucs clearsense cortex xsoar counterbreach dxc technology edocs emp f-secure client security f-secure policy manager f5 big-ip fast enterprises gentax fileauditor filesite gamma hp ilo hp virtual connect enterprise manager ibm datapower ibm mainframe ibm resource access control facility ibm icdb imss jh kasada leap mulesoft anypoint platform mvision namespace rdirectory netwrix threat prevention onapsis pensando phantom pharos picture perfect postscript powersentry riverbed steelhead rstudio server ruid rundeck safend dps sailpoint fam seclore servicenow sitespect smartdefense sophos safeguard stealthbits stealth defend stealthintercept sterling b2b integrator swift tanium threat response terraform usb vectra cognito detect vmware nsx vormetric weblogin xams xplan xsuite zlock physical access control accessit universal.net aviglion acm badge badgepoint brivo ccure building management system datawatch galaxy gallagher access control generic badge access genetec badge honeywell pro-watch honeywell siama honeywell win-pak icpam identiv johnson controls p2000 kaba exos lenel onguard lyrix net2door onguard rightcrowd rs2 technologies securityexpert sensormatik siemens access control swipes symmetry access control timelox vanderbilt printer asupim hp laserjet printer hp print server hp safecom lexmark ricoh printer xerox xps printing management ysoft privilege access management admin by request azure key vault beyondinsight beyondtrust privileged identity beyondtrust secure remote access beyondtrust ca privileged access manager server control centrify infrastructure services cyberark endpoint privilege manager cyberark privilege access manager hashicorp vault mastersam pam megaflex osirium pam360 passwordstate powertech identity and access manager thycotic software secret server unix privilege management proxy envoy menlo security microsoft web application proxy ping access squid remote access apache guacamole beyondtrust remote support microsoft rras remotelyanywhere secomea sandboxing check point threat emulation deep discovery inspector lastline symantec content analysis system targeted attack platform security configuration management (scm) aws ssm tripwire enterprise security services edge (sse) blue coat proxysg check point vsec virtual edition cisco cloud web security cisco gateway cisco secure web appliance cisco umbrella digital arts i-filter for business edgewave iprism iboss cloud ironport web security mcafee siteadvisor mcafee web gateway microsoft cas mimecast web security proofpoint casb skyhigh security cloud symantec virtual secure web gateway symantec web security service trend micro cloud app security trend micro interscan web security websense security gateway zscaler internet access siem (security information and event management) advanced analytics akamai siem audit log correlation rule darktrace epic siem eyeinspect fireeye cms fireeye helix fortisiem ibm sense logrhythm mcafee enterprise security manager microsoft sentinel netwrix auditor ng analytics qradar siem rsa netwitness platform skysea clientview splunk es splunk se varonis data security platform wazuh social networks google plus software-defined networking cisco aci threat intelligence centurylink managed security service f5 ip intelligence palo alto wildfire recorded future threat intelligence unified endpoint management (UEM) citrix endpoint management user authentication azure mfa centrify authentication service centrify zero trust privilege services digipass for apps gemalto mfa rsa adaptive authentication rsa authentication manager secure computing safeword securenvoy multi-factor authentication silverfort authentication platform swivel thales virtualization & containers amazon eks citrix virtual apps citrix virtual desktop openshift ovirt vcenter vmware esxi vmware horizon vmware velocloud sd-wan vmware view vpn (virtual private network) anyconnect avaya vpn cato cloud check point security gateway citrix gateway cognitas crosslink fortinet vpn globalprotect ivanti pulse secure ncp netmotion wireless nortel contivity vpn open vpn securenet web application proxy-tls gateway zscaler private access vulnerability assessment amazon inspector rapid7 insightvm tenable cloud security tenable identity exposure tenable vulnerability management tenable web app scanning vicarius vrx waf (web application firewall) airlock security access hub aws waf barracuda waf citrix web app firewall cloudflare waf f5 advanced web application firewall f5 application security manager f5 silverline fortiweb web application firewall imperva incapsula imperva securesphere magento waf radware waf redshield waf sigsci skudonet waf web server nonstop web server auditing apache microsoft iis microsoft wmi log workload protection aws cloudwatch carbon black app control cisco adc illumio core windows defender application control