Hey team,
I was wondering if I could ask what kind of timeframes some of you set for your Agent to check for tasks/run detection rules/send and recieve configuration/and so on.
We've around 1,200 computers in our production database and the NS just seems
really busy all of the time (8 cores @ 2.00GHZ, 32GB RAM).
If you look at the log viewer with informational, warning and errors selected it is smashing along constantly. Looking at the logs and task history on a single machine - there are things going on every minute.
I know this is pretty vauge, but I was just wondering what kind of general settings you were using?
Happy to provide more info if you need it.
Cheers,
Rhys