Forward logs from NLA to other SIEM Tools

This support forum board is for support questions relating to Nagios Log Server, our solution for managing and monitoring critical log data.
Locked
sarfarosh
Posts: 211
Joined: Fri Oct 05, 2012 3:56 am

Forward logs from NLA to other SIEM Tools

Post by sarfarosh »

Dear Team,

We have a requirement where in RAW logs from NLA need to be forwarded to other SIEM tools like SPLUNK,

Can this been done ? if yes how can we achieve this ?
scottwilkerson
DevOps Engineer
Posts: 19396
Joined: Tue Nov 15, 2011 3:11 pm
Location: Nagios Enterprises
Contact:

Re: Forward logs from NLA to other SIEM Tools

Post by scottwilkerson »

You can add an additional output

go to Configure -> Global Config
Click "Show Outputs" on the right

Here you can add an output to also send the logs to such as another syslog server
https://www.elastic.co/guide/en/logstas ... yslog.html

Additional output options
https://www.elastic.co/guide/en/logstas ... ugins.html
Former Nagios employee
Creator:
Human Design Website
Get Your Human Design Chart
Locked