I tried to search online for the Knime integration with SIEM solutions but couldnt find a clear answer. The usecase i have in mind is to forward the syslogs from the SIEM solutions to Knime platform and Knime performs the analytics.
Since most SIEM providers will not allow to connect to their database in client production environment so was thinking to forward syslogs from the SIEM solution to injest data and perform analytics.
Does Knime has builtin log storage and log receiver such as Nifi etc… and a local big data database to store and process all these logs for analytics. how can the above usecase be implemented…any directions shall be really helpful.
Apologies for asking such a simple question but I am pretty new here and started exploring knime since 2 days only…
Appreciate the support.