...
Info |
---|
You can find the Project ID in the LMC menu Management → Properties. |
2) Provide IDPS messages of the Unified Firewall for the SIEM system:
2.1) After activating SIEM support the Unified Firewall changes to the state Nicht aktuellstate Outdated. Roll out the configuration to the Unified Firewall, so that the IDPS alerts are provided.
Info |
---|
As of december 2024 only IDPS alerts are provided. Support for additional logs will be added in future LMC and LCOS FX versions. |
2.2) Connect to the Unified Firewall via the WEBconfig tunnel in the LMC and check in the menu Monitoring & Statistics → Settings, if the additional column LMC was rolled out and if the option is activate for IDPS Alert.
...
3.1) In the LMC go to the menu Project services specifications → External services → SIEM and click on Create API Secret Key.
3.2) Copy the Secret Key and save it in a secure location. Enter the Secret Key in your SIEM system afterwards.
4) Example commands in the SIEM API:
...