Quantcast
Channel: Forcepoint Community
Viewing all articles
Browse latest Browse all 2011

Integrating Websecurity with third party SIEM product-Event log Analyzer 7

$
0
0

Hi Team,

I have a MCS customer where they would like to use SIEM integration on Triton UI to forward the log transaction data to third party server.

Cureent setup/settings
----------------------------

Websense version: 7.7.3
MUX service is installed.
Third party (syslog) server: Event Log Analyzer 7
On Triton UI: UDP 514 port is used with SIEM format "syslogCEF (Arcsight)".

Current status:  We have confirmed with the help of packet capture that websense server is sending the transaction data to the third party server (event log analyzer 7), but still the logs are not showing on third party server.

Please suggest if we need to do any more on websense server side (like SIEM format) or on third party server.

Regards,

Harsha

 


Viewing all articles
Browse latest Browse all 2011

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>