Security

what needs to configured in netscreen firewall so it can forward syslog to splunk ?

seetharamanPr
New Member

Hi All,

Is there any document which shows the steps of configuration that needs to be done in the firewall to forward traffic to splunk. We are using Netscreen ISG 2000.

Regards
Pradeep

Tags (1)
0 Karma

dmaislin_splunk
Splunk Employee
Splunk Employee

This? http://docs.splunk.com/Documentation/AddOns/released/Juniper/Setup

o enable the Splunk Add-on for Juniper to collect data from your Juniper devices, you need to configure the Juniper devices to produce syslog output with an output format of default or splunk and push it to the data collection node of your Splunk platform installation, usually a universal forwarder.

For syslog configuration instructions, consult the Juniper Networks documentation:

Juniper OS (juniper:junos:idp and juniper:junos:firewall source types): http://www.juniper.net/techpubs/en_US/junos15.1/topics/example/syslog-messages-configuring-qfx-serie...
Juniper Netscreen: http://kb.juniper.net/InfoCenter/index?page=content&id=KB4759
Juniper SSLVPN: Please search the Juniper Networks documentation.
Juniper NSM (juniper:nsm and juniper:nsm:idp source types): http://kb.juniper.net/InfoCenter/index?page=content&id=KB11810
Juniper SRX: http://kb.juniper.net/InfoCenter/index?page=content&id=KB16502

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...