This post has been de-listed
It is no longer included in search results and normal feeds (front page, hot posts, subreddit posts, etc). It remains visible only via the author's post history.
14
Why are most EDR logs sampled?
Post Flair (click to view more posts with a particular flair)
Post Body
I recently learned that EDR logs are sampled (I.e not complete logs are being viewed when your checking EDR logs, only a subset of information ), why is that? Being new in security I would think we need ALL logs so i was surprised to learn that itβs sampled data. Is it due to performance ? Etc
Author
Account Strength
90%
Account Age
6 years
Verified Email
Yes
Verified Flair
No
Total Karma
723
Link Karma
519
Comment Karma
96
Profile updated: 3 days ago
Subreddit
Post Details
We try to extract some basic information from the post title. This is not
always successful or accurate, please use your best judgement and compare
these values to the post title and body for confirmation.
- Posted
- 7 months ago
- Reddit URL
- View post on reddit.com
- External URL
- reddit.com/r/AskNetsec/c...