Question
Does Versa Analytics change/update any fields of generated alarms?
Solution
Versa Analytics does not get the alarm syslog from the CPEs. It gets IPFIX record with the alarm fields, converts the records to structured syslog, and streams to third party collectors.
The contents such as alarm text, timestamp etc remains the same. It has richer information fields such as alarmKey to identify related alarms which is not there in the syslog directly exported from the device. This structured format is easily processed by SIEM systems like splunk.
Many customers have used this data for ticketing purposes.