Syslog v2
A Syslog server enables automatically opening incidents from Syslog clients. This integration supports filtering logs to convert to incidents, or alternatively converting all logs.
- Category
- Analytics & SIEM
- Pack
- Syslog
Configuration parameters
- creds_certificate — Certificate
- certificate — Certificate
- private_key — Private Key
- message_regex — Message Regex Filter For Incidents Creation.
- longRunningPort — Port mapping (required)
- longRunning — Long Running Instance
Commands (1)
- get-mapping-fields — Returns the list of fields for an incident type. This command should be used for debugging.