Alto MS Series User Manual Page 30

  • Download
  • Add to my manuals
  • Print
  • Page
    / 108
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 29
26 Getting Started Guide
Monitor the Firewall Integrate the Firewall into Your Management Network
There are five log types that PAN-OS can export to a Syslog server: traffic, threat, HIP match, config, and
system. For more details about the fields in each log type, refer to the
PAN-OS Syslog Integration Tech Note. For
a partial list of log messages and their severity levels, refer to the
System Log Reference.
Syslog messages are sent in clear text and cannot be directly encrypted. However, if you need
encryption, you can send the Syslog messages through a tunnel interface, which will force the
Syslog packets to be encrypted. You will also need to create a new service route for Syslog.
Set Up Syslog Forwarding
Step 1 Create a Server Profile that contains the
information for connecting to the Syslog
server(s).
1. Select Device > Server Profiles > Syslog.
2. Click
Add and then enter a Name for the profile.
3. (Optional) Select the virtual system to which this profile applies
from the
Location drop-down.
4. Click
Add to add a new Syslog server entry and enter the
information required to connect to the Syslog server (you can
add up to four Syslog servers to the same profile):
Name—Unique name for the server profile.
Syslog Server—IP address or fully qualified domain name
(FQDN) of the Syslog server.
Transport—Select TCP, UDP, or SSL as the method of
communication with the syslog server.
Port—The port number on which to send Syslog messages
(default is UDP on port 514); you must use the same port
number on the firewall and the Syslog server.
Format—Select the Syslog message format to use, BSD or
IETF. Traditionally, BSD format is over UDP and IETF
format is over TCP/SSL.
Facility—Select one of the Syslog standard values, which is
used to calculate the priority (PRI) field in your Syslog server
implementation. You should select the value that maps to
how you use the PRI field to manage your Syslog messages.
5. (Optional) To customize the format of the Syslog messages the
firewall sends, select the
Custom Log Format tab. For details on
how to create custom formats for the various log types, refer to
the Common Event Format Configuration Guide.
6. Click
OK to save the server profile.
Page view 29
1 2 ... 25 26 27 28 29 30 31 32 33 34 35 ... 107 108

Comments to this Manuals

No comments