Configuring DSMs
16
CRYPTOC
ARD
CRYPTO-S
HIELD
The SIEM CRYPTOCard CRYPTO-Shield DSM accepts events using syslog.
SIEM records all relevant events. Before configuring a CRYPTOCard
CRYPTO-Shield device in SIEM, you must configure your device to send syslog
events to SIEM.
To configure the device to send syslog events to SIEM, you must:
Step 1
Configure the following System Configuration parameters:
NOTE
You must have CRYPTOCard Operator access with the assigned default
Super-Operator system role to access the System Configuration parameters.
•
log4j.appender.<protocol>
- Directs the logs to a syslog host where the
<protocol>
is the type of log appender, which determines where you want to
send logs for storage. The options are: ACC, DBG, or LOG. For this parameter,
type the following:
org.apache.log4j.net.SyslogAppender
•
log4j.appender.<protocol>.SyslogHost <IP address>
- Type the IP
address or hostname of the syslog server where:
-
<protocol>
is the type of log appender, which determines where you want
to send logs for storage. The options are: ACC, DBG, or LOG.
-
<IP address>
is the IP address of the SIEM host to which you want to send
logs. This value can only be specified when the first parameter is configured.
This parameter can only be specified when the log4j.apender.<protocol>
parameter is configured.
Step 2
You are now ready to configure the log source in SIEM.
To configure SIEM to receive events from a CRYPTOCard CRYPTO-Shield
device:
From the
Log Source Type
drop-down list box, select the
CRYPTOCard
CRYPTOShield
option. For more information on configuring log sources, see
the
Log Sources User Guide
.
For more information about your CRYPTOCard CRYPTO-Shield device, see your
vendor documentation.
Summary of Contents for Security Information and Event Manager
Page 2: ......
Page 8: ......
Page 20: ......
Page 22: ......
Page 24: ......
Page 26: ......
Page 32: ......
Page 34: ......
Page 36: ......
Page 38: ......
Page 44: ......
Page 58: ......
Page 90: ......
Page 92: ......
Page 94: ......
Page 114: ......
Page 116: ......
Page 122: ......
Page 124: ......
Page 126: ...Configuring DSMs 110 FIREEYE...
Page 128: ......
Page 130: ......
Page 132: ......
Page 136: ......
Page 140: ......
Page 144: ......
Page 172: ......
Page 176: ...Configuring DSMs 160 ISC BIND...
Page 180: ......
Page 182: ......
Page 184: ......
Page 204: ......
Page 224: ......
Page 246: ......
Page 250: ......
Page 256: ......
Page 260: ......
Page 276: ......
Page 282: ......
Page 284: ......
Page 306: ......
Page 308: ......
Page 318: ......
Page 322: ......
Page 324: ......
Page 346: ......
Page 356: ......
Page 366: ......
Page 384: ......
Page 392: ......
Page 394: ......
Page 396: ......
Page 398: ......
Page 404: ......
Page 426: ......