cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1012
Views
0
Helpful
0
Replies

eStreamer eNcore for Sentinel - ASA logs

ryan14
Level 1
Level 1

Does anyone know if it is possible to forward LINA/FTD messages to Azure Sentinel via the e-Streamer eNcore? I have successfully setup the service to forward my FMC connection events but I also want to forward messages from the traditional ASA platform which have FTD in the string.

 

I do have an FTD that is forwarding the syslog messages to my eNcore server (I can see them in /var/log/syslog). But I don't see them in Sentinel.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/670/api/eStreamer_enCore/eStreamereNcoreSentinelOperationsGuide_409.html

0 Replies 0
Review Cisco Networking products for a $25 gift card