Eventlog Analyzer and Firewall Analyzer questions.
Folks, I have just started to test the firewall and eventlog analyzers this morning. My first issue seems to be they both want to use syslog port 512 for themselves. Shouldnt this software be smart enough to see that another product is already installed, and somehow "share" the database from the other product, or is that asking too much?
My fear is that in order to use more than one of these packages, I would have to either have seperate servers, or manually reconfigure all my devices to use 2 different syslogs - and in some cases, the device will not allow me to send logs to the same IP on different ports.
Secondly, I have been able to configure my firewalls to use Netflow 9 with the FA, but I am not getting any info on vpn sessions - be it web/ssl/ipsec or l2l.. did I miss something?
thanks!
New to ADSelfService Plus?