Collect and manage packages to support threat investigation and incident response.
The Packages tab of the Forensics and Analysis app allows you to collect and manage evidence packages.
This feature is not available in all regions.
The following table outlines the actions available on the Packages tab.
Action |
Description |
---|---|
Click Collect Evidence to collect evidence from endpoints. |
|
View evidence packages collected from an endpoint |
Click on an endpoint name to display all the packages collected from an endpoint. The Packages tab displays the following information about packages:
|
Filter endpoints |
Use the Search field and drop-down lists to locate specific endpoints. |