Hello Cisco Support,
We are currently configuring Syslog forwarding from our Cisco Secure Email Cloud Gateway to our internal SOC / CrowdStrike NG-SIEM environment.
We need to configure our Cisco Firepower firewall to allow incoming Syslog traffic from Cisco Cloud to our internal Syslog collector.
Could you please provide the exact source IP address(es) / NAT Gateway IPs / Outbound VIPs that Cisco Secure Email will use when sending Syslog traffic from our ESA allocation?
We specifically need the IP addresses that should be configured as the source addresses in our firewall rule.