Configuring DSMs
Juniper Infranet Controller
177
a
From the left pane, select
System > Log/Monitoring > Client Logs >
Settings
.
b
From the Select Events to Log section, select the events that you wish to log.
c
In the
Server name/IP
field, type the name or IP address of the syslog server.
Step 6
You are now ready to configure the log source in SIEM.
To configure SIEM to receive events from Juniper Networks Secure Access
device:
From the
Log Source Type
drop-down list box, select
Juniper Networks
Secure Access (SA) SSL VPN
.
For more information on configuring log sources, see the
Log Sources User Guide
.
For more information about your Juniper device, see your vendor documentation.
Juniper Infranet
Controller
A SIEM Juniper Networks Infranet Controller DSM accepts DHCP events using
syslog. SIEM records all relevant events from a Juniper Networks Infranet
Controller. Before you configure SIEM to integrate with a Juniper Networks Infranet
Controller, you must configure syslog within the server. For more information on
configuring your Juniper Networks Infranet Controller, consult your vendor
documentation.
After you configure syslog for your Juniper Infranet Controller, you are now ready
to configure the log source in SIEM.
To configure SIEM to receive events from your Juniper Networks Infranet
Controller:
From the
Log Source Type
drop-down list box, select
Juniper Networks
Infranet Controller
option.
For more information on configuring devices, see the
Log Sources User Guide
.
Juniper Networks
Firewall and VPN
A SIEM Juniper Networks Firewall and VPN DSM accepts firewall and VPN events
using UDP syslog. SIEM records all relevant firewall and VPN events.
NOTE
TCP syslog is not supported. You must use UDP syslog.
Before you configure SIEM to integrate with the Juniper Networks Firewall and
VPN device, you must:
Step 1
Log in to your Juniper Networks Firewall and VPN user interface.
Step 2
Select
Configuration > Report Settings > Syslog
.
Step 3
Select the
enable syslog messages
check box.
Содержание Security Information and Event Manager
Страница 1: ...Enterasys Security Information and Event Manager SIEM Configuring DSMs Release 7 7 0 P N 9034592 05...
Страница 2: ......
Страница 8: ......
Страница 20: ......
Страница 22: ......
Страница 24: ......
Страница 26: ......
Страница 32: ......
Страница 34: ......
Страница 36: ......
Страница 38: ......
Страница 44: ......
Страница 58: ......
Страница 90: ......
Страница 92: ......
Страница 94: ......
Страница 114: ......
Страница 116: ......
Страница 122: ......
Страница 124: ......
Страница 126: ...Configuring DSMs 110 FIREEYE...
Страница 128: ......
Страница 130: ......
Страница 132: ......
Страница 136: ......
Страница 140: ......
Страница 144: ......
Страница 172: ......
Страница 176: ...Configuring DSMs 160 ISC BIND...
Страница 180: ......
Страница 182: ......
Страница 184: ......
Страница 204: ......
Страница 224: ......
Страница 246: ......
Страница 250: ......
Страница 256: ......
Страница 260: ......
Страница 276: ......
Страница 282: ......
Страница 284: ......
Страница 306: ......
Страница 308: ......
Страница 318: ......
Страница 322: ......
Страница 324: ......
Страница 346: ......
Страница 356: ......
Страница 366: ......
Страница 384: ......
Страница 392: ......
Страница 394: ......
Страница 396: ......
Страница 398: ......
Страница 404: ......
Страница 426: ......