BrickStor appliance is capable to send system events to centralized syslog server. In order to configure your appliance sending events to such remote syslog server follow the following steps
Step-by-step guide
-
Open a SSH session to the BrickStor and run:
setup
- Select option 10: System Information and Administration
- Select option 14: Configure Syslog Forwarding
-
Syslogs and/or User Behavior data can be sent to a SIEM server.
-
Select option 1 for Syslog Forwarding
-
Select option 2 for UB Forwarding
-
- Enter the protocol you wish to use (tcp or udp). Note: udp is the recommended protocol.
- Enter the IP address to the SIEM server that you would like to send system events to.