EDR sends 4098 and 4117 events to ICDx as 14: Detected instead of 0: Unknown
book
Article ID: 210233
calendar_today
Updated On:
Products
Endpoint Detection and Response
Endpoint Protection with Endpoint Detection and Response
Advanced Threat Protection Platform
Issue/Introduction
Endpoint Detection and Response (EDR) appliance sends 4098 and 4117 events to ICDx as 14: Detected instead of 0: Unknown
Resolution
This issue is resolved starting with Endpoint Detection and Response (EDR) 4.6.0.
Please upgrade to change the behavior.
Feedback
thumb_up
Yes
thumb_down
No