Quantcast
Channel: THWACK: Message List - Security Event Manager (SEM) - Formerly Log & Event Manager
Viewing all articles
Browse latest Browse all 5385

Re: How to create rules if there is a change made on Fortigate FW or Cisco Router

$
0
0

Hi Jay,

 

Can you confirm if you have configured your Fortigate device to send syslogs to LEM? The CSV file only contains events from Windows Security logs.

 

You will need to send syslogs from the firewall to LEM. LEM can then capture events to show that someone logged onto the device & made a change (assuming your devices generate this information, but most devices do). Once the logging is setup, we can then create a rule to trigger an alert.

 

If you would like a call to assist with the above let me know & we can arrange something. Also, if network device backup & config is of interest, you could check out our Network Configuration Manager.

 

Jamie


Viewing all articles
Browse latest Browse all 5385

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>