Skip to main content

CSE Sensors

This guide has information about Cloud SIEM Enterprise sensors, the components that collect log and event data from your infrastructure and applications.

In this section, we will introduce the following concepts:

📄️ Network Sensor Troubleshooting

The CSE Network Sensor is a flexible network security monitor that monitors IP networks and collects flow and protocol session data, building audit records of network communications. As with all network sensors, performance is a key consideration for proper operation and comprehensive data collection. The installation of the CSE network sensor configures the sensor with reasonable defaults for many environments. For other environments, such as high throughput deployments, Sumo Logic advises the use of a supported 3rd party Bro/Zeek sensor offering or a custom Zeek cluster deployment.