Received: from malur.postgresql.org ([217.196.149.56]) by arkaria.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from ) id 1tmyxa-000oLh-S8 for pgsql-general@arkaria.postgresql.org; Tue, 25 Feb 2025 17:43:11 +0000 Received: from localhost ([127.0.0.1] helo=malur.postgresql.org) by malur.postgresql.org with esmtp (Exim 4.94.2) (envelope-from ) id 1tmyxZ-005xe6-R4 for pgsql-general@arkaria.postgresql.org; Tue, 25 Feb 2025 17:43:09 +0000 Received: from magus.postgresql.org ([2a02:c0:301:0:ffff::29]) by malur.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.94.2) (envelope-from ) id 1tmyxY-005xcT-FF for pgsql-general@lists.postgresql.org; Tue, 25 Feb 2025 17:43:09 +0000 Received: from fhigh-a8-smtp.messagingengine.com ([103.168.172.159]) by magus.postgresql.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1tmyxU-0003KV-02 for pgsql-general@postgresql.org; Tue, 25 Feb 2025 17:43:08 +0000 Received: from phl-compute-10.internal (phl-compute-10.phl.internal [10.202.2.50]) by mailfhigh.phl.internal (Postfix) with ESMTP id 0B5EB1140200; Tue, 25 Feb 2025 12:43:02 -0500 (EST) Received: from phl-mailfrontend-01 ([10.202.2.162]) by phl-compute-10.internal (MEProxy); Tue, 25 Feb 2025 12:43:02 -0500 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=aklaver.com; h= cc:content-transfer-encoding:content-type:content-type:date:date :from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:subject:subject:to:to; s=fm3; t=1740505382; x=1740591782; bh=SEX/j0g77H9IYcsjWiirMEtfCSyXQZullvevWPDxgLo=; b= AmwTsF1RKsvIyWzLUPhCxZMTwARiaci/54KO1befB5iScBb8xIp17h3zqwpxsay1 vT1AxVT2uxHonbhb5jRi/nMGBffUzXHp6DuTxqJxq0ggDk+4fLEQoboXPDOQmXlA +4VK2S3rWT/2Hd1p9+Ppa7OEAwAR3dYtDktsXw9d0FBeqvy6O8sgcU4pXGuhSG2Y m7jMEwtSunEp1s6ezELykKD4EQSkJGGKFFjvT7BpVgaqINyD8QtbPtxZXLChkgyO xOG0F54xG39n0PVHAHI9xEV99mPHsUW6VW/kowa06DOcuhv7+0Vk6Z1loXFjJcr/ 09ZaYRkYWz8n8+ZulkUsPA== DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-transfer-encoding:content-type :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:subject:subject:to:to:x-me-proxy:x-me-sender :x-me-sender:x-sasl-enc; s=fm1; t=1740505382; x=1740591782; bh=S EX/j0g77H9IYcsjWiirMEtfCSyXQZullvevWPDxgLo=; b=6eVBM8mzM4xv+SPci SPY9XWw/TCltnFXX2jfEP1XQ0p+hlPfQOEtGEwhvTi26BjJSBRigM57tIfow9/Wh ZfOnZkJobQM5G8aaa7owZBwZlPurzq3R0jC0qFciNvZdzuNwnJQTB2gVySrFdQfZ Ijj4eJwmWn0PeRXwYZ5DPNYM5GJBNdAh54wHaGiAr9T6VrwqvQFxA+ehsZSg4xRR wzB9HsuaBgzLICQC1lws56yhz4+RiE9plQD74qes0kVXaC9YBYVxJ3kS82Td1CZQ +vc/xIeHr+eUAerToD0mgezsSqhgdXZPAQXq0UkF+2S/brh7runYysm8cBUw9ade VuDwg== X-ME-Sender: X-ME-Received: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeefvddrtddtgdekvdeffecutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpggftfghnshhusghstghrihgsvgdp uffrtefokffrpgfnqfghnecuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivg hnthhsucdlqddutddtmdenucfjughrpefkffggfgfuvfhfhfgjtgfgsehtjeertddtvdej necuhfhrohhmpeetughrihgrnhcumfhlrghvvghruceorggurhhirghnrdhklhgrvhgvrh esrghklhgrvhgvrhdrtghomheqnecuggftrfgrthhtvghrnhepkeefheduvdejiefgieef jedtudduffelvdefleehfedtieffuefgvdekleegtddvnecuffhomhgrihhnpehpohhsth hgrhgvshhqlhdrohhrghenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgr ihhlfhhrohhmpegrughrihgrnhdrkhhlrghvvghrsegrkhhlrghvvghrrdgtohhmpdhnsg gprhgtphhtthhopedvpdhmohguvgepshhmthhpohhuthdprhgtphhtthhopehsrghkshhh ihdrsggvhhhlsegtrhgvughothhsrdgtohhmpdhrtghpthhtohepphhgshhqlhdqghgvnh gvrhgrlhesphhoshhtghhrvghsqhhlrdhorhhg X-ME-Proxy: Feedback-ID: i76984098:Fastmail Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 25 Feb 2025 12:43:01 -0500 (EST) Message-ID: <9889d5e0-caac-487e-a1e4-ed0c1081356a@aklaver.com> Date: Tue, 25 Feb 2025 09:43:00 -0800 MIME-Version: 1.0 User-Agent: Mozilla Thunderbird Subject: Re: PgSQL - SIEM Integration To: Sakshi Behl , "pgsql-general@postgresql.org" References: Content-Language: en-US From: Adrian Klaver In-Reply-To: Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit List-Id: List-Help: List-Subscribe: List-Post: List-Owner: List-Archive: Archived-At: Precedence: bulk On 2/25/25 09:19, Sakshi Behl wrote: > Hi Adrian, > > I did receive an empty email body. > Kindly resend if you shared any information. The convention on this list is to do inline or bottom posting, not the top posting you are doing. As the quoted section below shows, the reply was not empty. What I sent was: https://www.postgresql.org/docs/current/event-trigger-definition.html > > Thank you! > ------------------------------------------------------------------------ > *From:* Adrian Klaver > *Sent:* Tuesday, February 25, 2025 8:41:54 PM > *To:* Sakshi Behl ; > pgsql-general@postgresql.org > *Subject:* Re: PgSQL - SIEM Integration > On 2/24/25 22:51, Sakshi Behl wrote: >> Hi Team, >> >> We are in the process of integrating pgSQL with our SIEM and would >> appreciate your expert guidance on this matter. >> Kindly refer to the attached document outlining the events of interest >> and provide your input based on the relevant postgreSQL log entries. > > https://www.postgresql.org/docs/current/event-trigger-definition.html > > >> >> Looking forward to hearing from you. >> >> Thanks > > -- > Adrian Klaver > adrian.klaver@aklaver.com > -- Adrian Klaver adrian.klaver@aklaver.com