Download and Configure MySQL App This articles explain how to configure MySQL App in order to retrieve logs from a specifc database table. Before start here you can see how our database is configured: Requirements: SGBox version 4.2.5 Go to the application lists from SGBox go to SCM > Applications Select Vendors Integrations and download […]
Download and Configure Microsoft SQL App This articles explain how to configure MSSQL App in order to retrieve logs from a specificd database table. Before start here you can find how our database is configured by logging in with SQL Authentication: You can see: In red: the database configuration In black: the query results Requirements: […]
Configure Syslog on XenServer On Xen systems is not necessary to install a specific agent to send log to SGBox. The syslog protocol will be used. Edit “xenserver.conf” file vi /etc/rsyslog.d/xenserver.conf Add the following row in order to send only authentication logs. Is possible use the IP or the hostname of SGBox auth,authpriv.* @SGBox-IP Alternatively, […]
How to configure Palo Alto to send logs to SGBox Please follow the official guide, for your specific Palo Alto version, on how to send CEF formatted logs to SGBox through the syslog protocol: Configuration guides WARNING!!! Please be aware to not cat and paste log templates directly from the PDF, or the web page, […]
Download updated feed from internet This articles explain to configure open source feed to use as list in SGBox. Requirements: SGBox version 4.2.5 Feed Application must be scheduled. See this section to discover how to schedule an application. From SGBox go to SCM > Actions > Lists Select Feeds in the top right corner. Select […]
How to configure Syslog on MikroTik Log in to MikroTik using web interface. Click on System > Logging, then switch to Action tab. Select Remote and specify the SGBox IP and port 514. Go back on Rules tab and specify which type of log you want to send to SGBox.
How to export SGBox GPG Key This articles explain how to export the SGBox private and public keys in order to decipher your logs out of SGBox. Requirements: SGBox version 4.2.0 or later. Only the default Admin user can export the key. The supervisor password must be set in SCM > Advanced Options, Supervisor Password. […]
Introduction to be able to receive logs from Fortigate appliance, the syslog must be configured with key/value syslog (also “Default” or “RFC5424”). Exmple configuration NOTE: this is only an example configuration, the options may change due to different version or changed options. Connect to your fortinet system. Choose Log Forwarding and specify the SGBox IP. […]
Configure SGBox Restore Application This article explains how to configure SGBox APP in order to restore your log or Database to SGBox. Requirements: SGBox version 4.2.4 Shared Forlder on your server. Install SGBox Backup Application: SCM > Applications > Backup You can choose to use SMB or NFS protocol to restore your files. After installed […]
Schedule application execution Some applications need to be scheduled in order to be executed.This articles explain how to configure SGBox schedule job in order to execute them at specific time recursively. Requirements: SGBox version 4.2.0. Specific application must be installed. From SCM > Applications select SCHEDULE LIST. Then click on NEW SCHEDULATION Create the New […]