Skip to content
English
  • There are no suggestions because the search field is empty.

FileCloud SIEM Integration (Syslogs)

Original Question or Issue:

I am able to "Send Test Message" and "Validate Mappings" successfully.  However, I have no idea where the syslog test message is being sent.


Environment:

  • Product - FileCloud Server
  • Version - Any
  • Platform - Any

Steps to Reproduce:

 


Error or Log Message:

 


Defect or Enhancement Number:

 


Cause:

 


Resolution or Workaround:

When you use Syslog as the SIEM Integration method, the messages are written directly to Syslog, which can be imported by the SIEM server.

If you are running on a Windows machine, the logs are sent to the Event Viewer logs, see the sample screenshot below:

5945e273e72d73834c6ea40eb86dc519a9098e9e5d74adbd2e873a777c557045bdf8a480c9ef1fff?t=d00c22f9244c07b10461bcc6543fe66a

Logs added to the Syslogs (Event Viewer) can be imported into your SIEM server. Please check this with the team managing your SIEM server.


Notes: