Anyone create a plugin for Syslog on OSSIM Alienvault?

Discussion in 'LiquidFiles General' started by John Estep, Apr 5, 2023.

  1. John Estep

    John Estep New Member

    Joined:
    Apr 5, 2023
    Messages:
    2
    Likes Received:
    0
    Would really like to be able to use syslog, but without a plugin for use with Liquid Files I cannot receive syslog data :(
     
  2. David

    David Administrator
    Staff Member

    Joined:
    Dec 1, 2015
    Messages:
    802
    Likes Received:
    31
    We (LF support) don't have practical experience with the Alienvault platform, but the LF appliance is using the standard Syslog format.
    According to this list of plugins in the Alienvault should already be a generic Syslog plugin, which should be available to select under the new plugin configuration ("Plugins > Edit Plugin").

    When this Syslog plugin is configured the Alienvault should listen now on the udp/514 port and you should be able easily forward logs there from the LF server.

    On the LF server you need then only configure the Alienvault's IP/hostname and the syslog port under the "Admin > System > Network > Syslog" tab.
     
  3. John Estep

    John Estep New Member

    Joined:
    Apr 5, 2023
    Messages:
    2
    Likes Received:
    0

    THANK YOU SO MUCH!!!!! That did the trick!
     

Share This Page