Configuring DSMs
172
J
UNIPER
N
ETWORKS
<IP address>
is the IP address of your SIEM system.
<level>
is info, error, warning, or any,
<option>
is one of the following options from
Table 36-5
.
For example:
set system syslog host 10.77.12.12 firewall info
Configures the Juniper EX-Series Ethernet Switch to send info messages from
firewall filtering systems to your SIEM system.
Step 4
Repeat
Step 3
to configure any additional syslog destinations and options. Each
additional option must be identified using a separate syslog destination
configuration.
Step 5
You are now ready to configure the Juniper EX-Series Ethernet Switch in SIEM.
To configure SIEM to receive events from a Juniper EX-Series Ethernet Switch:
From the
Log Source Type
drop-down list box. select
Juniper EX-Series
Ethernet Switch
option.
For more information on configuring log sources, see the
Log Sources User Guide
.
For more information about your Juniper switch, see your vendor documentation.
Table 36-5
Juniper Networks Ex-Series Switch Options
Option
Description
any
All facilities
authorization
Authorization system
change-log
Configuration change log
conflict-log
Configuration conflict log
daemon
Various system processes
dfc
Dynamic flow capture
explicit-priority
Include priority and facility in messages
external
Local external applications
facility-override
Alternate facility for logging to remote host
firewall
Firewall filtering system
ftp
FTP process
interactive-commands Commands executed by the UI
kernel
Kernel
log-prefix
Prefix for all logging to this host
match
Regular expression for lines to be logged
pfe
Packet Forwarding Engine
user
User processes
Summary of Contents for Security Information and Event Manager
Page 2: ......
Page 8: ......
Page 20: ......
Page 22: ......
Page 24: ......
Page 26: ......
Page 32: ......
Page 34: ......
Page 36: ......
Page 38: ......
Page 44: ......
Page 58: ......
Page 90: ......
Page 92: ......
Page 94: ......
Page 114: ......
Page 116: ......
Page 122: ......
Page 124: ......
Page 126: ...Configuring DSMs 110 FIREEYE...
Page 128: ......
Page 130: ......
Page 132: ......
Page 136: ......
Page 140: ......
Page 144: ......
Page 172: ......
Page 176: ...Configuring DSMs 160 ISC BIND...
Page 180: ......
Page 182: ......
Page 184: ......
Page 204: ......
Page 224: ......
Page 246: ......
Page 250: ......
Page 256: ......
Page 260: ......
Page 276: ......
Page 282: ......
Page 284: ......
Page 306: ......
Page 308: ......
Page 318: ......
Page 322: ......
Page 324: ......
Page 346: ......
Page 356: ......
Page 366: ......
Page 384: ......
Page 392: ......
Page 394: ......
Page 396: ......
Page 398: ......
Page 404: ......
Page 426: ......