3.2 Data Collection Policy Security Knowledge

When you select a data collection policy in the left pane, the Agent Manager Console displays the NetIQ Knowledge Base in the right pane. The NetIQ Knowledge Base provides information about the data collection policy, including a summary of features and configuration information.

You cannot modify the NetIQ Knowledge Base, but you can add your own security knowledge in the company knowledge base when you create data collection rules. Over time, your company knowledge base adds value to your organization. Adding information to your company knowledge base reflects your security knowledge and helps others become more familiar with the security issues your organization faces.

Information you add to the company knowledge base when you resolve an alert in Sentinel can include details on the resolution of the alert, which can help others resolve similar alerts in the future. The information you add to the company knowledge base is appended to the Knowledge Base of the data collection rule that generated the alert, and becomes available in later alerts.