configuration – SGBox Next Generation SIEM & SOAR https://www.sgbox.eu Next Generation SIEM & SOAR Thu, 05 Sep 2024 12:30:03 +0000 en-US hourly 1 https://wordpress.org/?v=6.7.1 https://www.sgbox.eu/wp-content/uploads/2020/09/cropped-Logo-SGBox-Trasparente-NO-SCRITTA-150x150.webp configuration – SGBox Next Generation SIEM & SOAR https://www.sgbox.eu 32 32 syslog configuration on Zyxel Firewalls https://www.sgbox.eu/en/knowledge-base/configure-zyxel-firewalls/ Wed, 24 Jul 2024 13:56:31 +0000 https://www.sgbox.eu/?post_type=epkb_post_type_1&p=26712

Syslog configuration on Zyxel Firewalls

Configure Zyxel Firewalls

Configure Zyxel device to forward syslog data to SGBox

  1.  Log into the Zyxel Web Interface.
  2. Navigate to Configuration > Log & Report > Log Settings.
syslog configuration on Zyxel Firewalls
  1. Choose a Remote Server.
  2. Click Active.
  3. Choose Log Format as VRPT/Syslog.
  4. Enter the IP address of the SGBox in Server Address field.
  5. Select Local 7 in Log Facility field.
  6. Select the Categories you want to be logged (normal = default logs, debug = very detailed logs, disable = no logs)
syslog configuration on Zyxel Firewalls
Troubleshooting

Default syslog server port is 514.

]]>
Syslog configuration on Bitdefender GravityZone https://www.sgbox.eu/en/knowledge-base/syslog-configuration-on-bitdefender-gravityzone/ Fri, 28 Jun 2019 14:37:11 +0000 https://10.253.1.90/sgbox/EN/?post_type=epkb_post_type_1&p=1664 How to configurate Syslog on Bitdefender GravityZone

This guide provides instructions to configure Bitdefender GravityZone to forward Bitdefender GravityZone
logs via syslog. The configurations detailed in this guide are consistent with Bitdefender GravityZone (on-prem) v6.5 to 7.0.

Requirements:

  • Admin access to Bitdefender GravityZone (on-prem) console. If you have cloud console you need to follow this guide.

Note: Bitdefender GravityZone supports the syslog option from v6.50 to 7.0. 

Following are the steps to configure Bitdefender Gravityzone ( On-premises) to send logs to SGBox.

Log in to GravityZone Control center.
Click on Configuration > Miscellaneous.
Put the flag on Enable Syslog and write the IP of your SGBox.
Enter SGBox port (514) and select protocol UDP.

Syslog configuration on Bitdefender GravityZone

Click on configuration button ( the rowel ) in the top-right corner

Syslog configuration on Bitdefender GravityZone

Define the events you want send to SGBox

Syslog configuration on Bitdefender GravityZone

 

After data source appears in SGBox you need to install following package from SCM > Application > Pacakges:


Syslog configuration on Bitdefender GravityZone

 

 

 

]]>