Configuring DSMs
184
J
UNIPER
N
ETWORKS
Configuring Juniper
Steel-Belted Radius
for the Adaptive Log
Exporter
To integrate a Juniper Steel-Belted Radius DSM with SIEM using the Adaptive Log
Exporter:
Step 1
From the Start menu, select
Start > Programs > Adaptive Log Exporter >
Configure Adapter Log Exporter
.
The Adaptive Log Exporter must be installed on the same system as your Juniper
SBR system. The Adaptive Log Exporter must be updated to include the Juniper
SBR device plug-in. For more information, see your Adaptive Log Exporter Users
Guide.
Step 2
Click the
Devices
tab.
Step 3
Select
Juniper SBR
, right-click and select
Add Device
.
The New Juniper SBR Properties window is displayed.
Step 4
Configure the following parameters:
a
Name
- Type a name for the device. The name may include alphanumeric
characters and underscore (_) characters.
b
Description
- Type a description for this device.
c
Device Address
- Type the IP address or hostname that the device. The IP
address or hostname is used to identify the device in syslog messages
forwarded to SIEM. This is the IP address or hostname that will appear in SIEM.
d
Root Log Directory
-
Type the location where Juniper SBR stores log files.
Report log files should be located in the Steel-Belted Radius directory
<radiusdir>\authReports
. The Adaptive Log Exporter monitors the Root
Log Directory for any .CSV files having a date stamp in the file name matching
the current day.
Step 5
From the
Adaptive Log Exporter
toolbar, click
Save
.
Step 6
From the
Adaptive Log Exporter
toolbar, click
Deploy
.
NOTE
You must use the default values for the log file heading in the Juniper Steel-Belted
Radius appliance. If the log file headings have been changed from the default
values and SIEM is not parsing SBR events properly, please contact Customer
Support.
Step 7
You are now ready to configure the log source in SIEM.
Juniper SBR events provided from the Adaptive Log Exporter are auto discovered
by SIEM. If you want to manually configure SIEM to receive events from Juniper
Steel-Belted Radius:
From the
Log Source Type
drop-down box, select the
Juniper Steel Belted
Radius
option.
For more information on configuring log sources, see the
Log Sources User Guide
.
Summary of Contents for Security Information and Event Manager
Page 2: ......
Page 8: ......
Page 20: ......
Page 22: ......
Page 24: ......
Page 26: ......
Page 32: ......
Page 34: ......
Page 36: ......
Page 38: ......
Page 44: ......
Page 58: ......
Page 90: ......
Page 92: ......
Page 94: ......
Page 114: ......
Page 116: ......
Page 122: ......
Page 124: ......
Page 126: ...Configuring DSMs 110 FIREEYE...
Page 128: ......
Page 130: ......
Page 132: ......
Page 136: ......
Page 140: ......
Page 144: ......
Page 172: ......
Page 176: ...Configuring DSMs 160 ISC BIND...
Page 180: ......
Page 182: ......
Page 184: ......
Page 204: ......
Page 224: ......
Page 246: ......
Page 250: ......
Page 256: ......
Page 260: ......
Page 276: ......
Page 282: ......
Page 284: ......
Page 306: ......
Page 308: ......
Page 318: ......
Page 322: ......
Page 324: ......
Page 346: ......
Page 356: ......
Page 366: ......
Page 384: ......
Page 392: ......
Page 394: ......
Page 396: ......
Page 398: ......
Page 404: ......
Page 426: ......