Security Compliance

SEM USB Defender Events filter conditions

This article provides the default conditions used for the USB-Defender Events filter under the Endpoint Monitoring section.

First published date

10/17/2018 1:15 PM

Last published date

10/17/2018 1:15 PM

Overview

This article applies to Security Event Manager (formerly Log & Event Manager).

This article provides the default conditions used for the USB-Defender Events filter under the Endpoint Monitoring section. 

Product section

Security Event Manager

Cause

Unknown

Resolution

Name: USB-Defender Events

Conditions: AnyAlert.ProviderSID = *USB*
 

See Default SEM filter conditions on the Web Console Monitor page for a full list of available default filters in SEM.