enVision may be collecting data from a device, but one may not be able to run reports or queries on this data.
First, the analyze box must be checked in the Manage Monitored Devices screen.
Once it has been confirmed that the device is being analyzed, open the LS Viewer and select View Graphs -> Events by Event Type from the left window pane. Next, in the right hand window pane, select a Device Type or a specific Device from the Ad Hoc Query Section of the window. Finally, select Event Types from the Data Type drop down menu in the bottom half of the window. Once this choice has been selected, click the Update button. This will show the various message ids that have been collected from the device. If you see many unknown messages, then that means that enVision is not properly parsing the incoming data, and thus is not able to provide the data for reports. If this is the case, use the lsdata command to collect the unknown events, and forward them to Network Intelligence for message updates.
Related Articles
Web Services Change Requests do not display usernames of duplicate accounts in RSA Identity Governance & Lifecycle 46Number of Views Duplicate User IDs 107Number of Views Run Reports 166Number of Views Cloning AFX connectors creates duplicate connectors if connector names have been modified in RSA Identity Governance & Lif… 167Number of Views RSA Cloud Authentication Service Identity Source Synchronization reports user accounts with Duplicate Email Address 174Number of Views
Trending Articles
Download RSA SecurID Access Cloud User Event audit logs using Cloud Administration REST API CLU RSA MFA Agent 2.5 for Microsoft Windows Installation and Administration Guide Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory Authentication Manager Security Console and Operations Console Inaccessible After Certificate Update Authentication Manager How to Retrieve the LDAPS Certificate and Configure an External Identity Source to Use LDAPS