Proteggiamo il tuo ambiente digitale da qualsiasi attacco informatico. Sfrutta tutte le potenzialità della piattaforma SGBox!

Gallery

Contatti

Via Melchiorre Gioia, 168 - 20125 Milano

info@sgbox.it

+39 02 60830172

Linux

Syslog configuration on XenServer

Configure Syslog on XenServer On Xen systems is not necessary to install a specific agent to send log to SGBox. The syslog protocol will be used. Edit “xenserver.conf” file vi /etc/rsyslog.d/xenserver.conf Add the following row in order to send only authentication logs. Is possible use the IP or the hostname of SGBox auth,authpriv.* @SGBox-IP Alternatively, […]

Network Appliance

Syslog Configuration on PaloAlto

How to configure Palo Alto to send logs to SGBox Please follow the official guide, for your specific Palo Alto version, on how to send CEF formatted logs to SGBox through the syslog protocol: Configuration guides WARNING!!! Please be aware to not cat and paste log templates directly from the PDF, or the web page, […]

Actions

Configure Basic Feed List

Download updated feed from internet This articles explain to configure open source feed to use as list in SGBox. Requirements: SGBox version 4.2.5 Feed Application must be scheduled. See this section to discover how to schedule an application. From SGBox go to SCM > Actions > Lists Select Feeds in the top right corner. Select […]

Applications

Export SGBox GPG Key

How to export SGBox GPG Key This articles explain how to export the SGBox private and public keys in order to decipher your logs out of SGBox. Requirements: SGBox version 4.2.0 or later. Only the default Admin user can export the key. The supervisor password must be set in SCM > Advanced Options, Supervisor Password. […]

Network Appliance

Syslog configuration on Fortinet

Introduction to be able to receive logs from Fortigate appliance, the syslog must be configured with key/value syslog (also “Default” or “RFC5424”). Exmple configuration NOTE: this is only an example configuration, the options may change due to different version or changed options. Connect to your fortinet system. Choose Log Forwarding and specify the SGBox IP. […]

Applications

SGBox Restore

Configure SGBox Restore Application This article explains how to configure SGBox APP in order to restore your log or Database to SGBox. Requirements: SGBox version 4.2.4 Shared Forlder on your server. Install SGBox Backup Application: SCM > Applications > Backup You can choose to use SMB or NFS protocol to restore your files. After installed […]

Applications

Schedule Application

Schedule application execution Some applications need to be scheduled in order to be executed.This articles explain how to configure SGBox schedule job in order to execute them at specific time recursively. Requirements: SGBox version 4.2.0. Specific application must be installed. From SCM > Applications select SCHEDULE LIST. Then click on NEW SCHEDULATION Create the New […]

Applications

SGBox Backup

Configure SGBox Backup Application This articles explain how to configure SGBox APP in order to backup or extract your log out of SGBox. Remember that all extracted data are encrypted, you need your SGBox GPG private key in order to decrypt them. See this article to know how to export your key: http://www.sgbox.eu/knowledge-base/export-sgbox-gpg-key. Requirements: SGBox […]

LCE - Log Correlation Engine

Telegram BOT

Configure SGBox to use Telgram API in LCE Module and send alert messages This articles explain how to configure SGBox to interact with Telegram API in order to send alert messages when a specific event occur. Requirements: SGBox version 4.2.4 with the LM and LCE modules. A Telegram BOT. There are many tutorial about how […]