View the exact time that events are inserted into the receiver's database.
Verify that you have the following permissions:
View Data to get events and view the event time
View Management to create a view
Event Management to change events
On the Trellix ESM console, add an events table view that includes the Device Time field.
On the View pane toolbar, click the Create New View icon
.Click and drag the Table component, then click Next.
Click Fields.
Click Device Time in the list on the left, and move it to the list on the right.
On the Fields page, click OK, then click Finish.
On the View Editing Toolbar, click Save As, type the name for the view, then click OK.
Close the View Editing Toolbar.
The view is added to the drop-down list of views.
View the Device Time in one of these ways.
Note
If you send an event to remedy, the device time for that event is lost.
View the Device Time column in the event table of the view you added.
Click the View Data Details icon
at the bottom of the table.Click the Advanced Details tab, then view the Device Time field.