What parameter if any I can set to make the endpoint send results faster to the destination? I am observing a couple of minutes if not more of delay in between the event time and the time it gets to my SIEM. I am guessing something is buffering the logs in the endpoint before shipping to the destination
Thank you. I forgot to mention I am sending logs directly to AWS, so I was not sure if this one was going to be applicable
f
FG
05/17/2024, 2:11 PM
that I don't think I can help with I haven't done streaming to aws. the idea should be the same though, find the applicable flags for your logger and ensure the periodicity and thresholds are set accordingly.