Hello community,
We integrated our FMC with the Syslog server to send Intrusion and Security Intelligent event and we can see them coming from the FMC, however, we see also rarely some event from the FTDs as well
We didn't enable the FTD logging because we need to send only event from the FMC and not from the FTD.
We even didn't enable the logging from the Access Policy rules the only thing we configured is enabled and configured the syslog for the intrusion policy and Security Intelligence and we configured also the Syslog in the Alert.
Any suggestion please?
Thank you