cmdReporter Wiki

Open navigation

cmdReporter Architecture Overview

What cmdReporter Does

cmdReporter is a security monitoring tool for macOS. Using minimal resources, cmdReporter collects the data IT security teams need to hunt threats to macOS and streams the logs in real time to nearly any analysis server.

Our approach filters and normalizes all logs coming from macOS into a single format that is easy for any log analysis software to parse and search.

cmdReporter Server?

There is no cmdReporter server, we are designed to integrate and stream directly from the mac to nearly any SIEM, log collection, or data lake tool that your organization already uses to store and analyze computer logs.

Why cmdReporter is Different

cmdReporter is designed to work with macOS and only macOS. We do this by:

  • No kernel extension.
  • Release-day support for new macOS versions
  • Near-zero performance impact.
  • 100% preference coverage for configuration profiles.

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.