<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Sorry but that is not helpful in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044805#M43181</link>
    <description>&lt;P&gt;Sorry but that is not helpful. I already have alerts configured. I need to trigger a test alert.&lt;/P&gt;</description>
    <pubDate>Wed, 08 Feb 2017 14:32:58 GMT</pubDate>
    <dc:creator>Ben Rodriguez</dc:creator>
    <dc:date>2017-02-08T14:32:58Z</dc:date>
    <item>
      <title>sourcefire test alert/syslog message</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044801#M43173</link>
      <description>&lt;P&gt;Hi community,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have a working Sourcefire system setup with syslog pointing to a Graylog logging server. I am looking to get some test messages into the logging server. How can I trigger a message from the Sourcefire? Ifs there a built in mechanism for that? I highly recommend Graylog. It's free/open source and easy to setup. Thanks for any help.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044801#M43173</guid>
      <dc:creator>Ben Rodriguez</dc:creator>
      <dc:date>2019-03-10T13:45:58Z</dc:date>
    </item>
    <item>
      <title>After configuring the syslog</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044802#M43175</link>
      <description>&lt;P&gt;After configuring the syslog server, you just have to enable the loggings to send the log to Syslog server in Access control - Rules.&lt;BR /&gt;&lt;BR /&gt;Refer the following link for more information and let us know if that helps you.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118464-configure-firesight-00.html" target="_blank"&gt;http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118464-configure-firesight-00.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Hope to help.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 14:11:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044802#M43175</guid>
      <dc:creator>syeda3</dc:creator>
      <dc:date>2017-02-08T14:11:46Z</dc:date>
    </item>
    <item>
      <title>Hi syeda,</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044803#M43176</link>
      <description>&lt;P&gt;Hi syeda,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have logging configured. How do I send a test alert is my question. Any idea?&lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 14:26:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044803#M43176</guid>
      <dc:creator>Ben Rodriguez</dc:creator>
      <dc:date>2017-02-08T14:26:43Z</dc:date>
    </item>
    <item>
      <title>Please see the below document</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044804#M43179</link>
      <description>&lt;P&gt;Please see the below document for send alters.&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/support/docs/security/firesight-management-center/118464-configure-firesight-00.html&lt;/P&gt;
&lt;P&gt;Hope to help.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 14:30:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044804#M43179</guid>
      <dc:creator>syeda3</dc:creator>
      <dc:date>2017-02-08T14:30:16Z</dc:date>
    </item>
    <item>
      <title>Sorry but that is not helpful</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044805#M43181</link>
      <description>&lt;P&gt;Sorry but that is not helpful. I already have alerts configured. I need to trigger a test alert.&lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 14:32:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3044805#M43181</guid>
      <dc:creator>Ben Rodriguez</dc:creator>
      <dc:date>2017-02-08T14:32:58Z</dc:date>
    </item>
    <item>
      <title>Re: Sorry but that is not helpful</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3690811#M43183</link>
      <description>&lt;P&gt;Hi, I had this problem too. You need to generate a real event but one which isn't harmful and is easy to identify. In my case I use a powershell script to make a web request with a user-agent which fires an alert. I use a particular site which is one of those set up to allow you to 'hack' it, and you could also use a completely made up site. I'm surprised that Sourcefire/Firepower doesn't have this functionality built in.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Here is the gist of my script&lt;/P&gt;
&lt;P&gt;Invoke-WebRequest&amp;nbsp; -Uri &lt;EM&gt;(some url)&lt;/EM&gt; -UserAgent &lt;EM&gt;(some value)&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Does seem simple I know, but I find it useful.&lt;/P&gt;</description>
      <pubDate>Sat, 18 Aug 2018 10:13:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-test-alert-syslog-message/m-p/3690811#M43183</guid>
      <dc:creator>john.clayton</dc:creator>
      <dc:date>2018-08-18T10:13:17Z</dc:date>
    </item>
  </channel>
</rss>

