taking logs from centralized log server
Hi,
Currently I already use another firewall log analyzing software, and we decided to try out this one.
There is several layers of firewalls in the network, consisting various firewall devices, such as checkpoint, ciscoPIX, netscreen, cyberguard, stonegate, etc and I'm succesfully sending the logs into centralized log server database using syslog. When trying advent's firewall analyzer, I just set the centralized syslog server to forward all logs which has been received to the advent firewall analyzer host.
However, I only saw netscreen firewalls which displayed in the Manage engine web interface and very little of cisco pix. What happen to other devices? there is no report on unparsed logs in the web interface. I'm sure all the logs from all devices are sent, since it does appear in other log analyzing software and the raw syslogs are shown up when viewing in syslog server.
Thanks,
Tesna
New to ADSelfService Plus?