Robbie,
You could forward syslog from the pfsense box to the Security Onion box, as described here:
https://doc.pfsense.org/index.php/Copying_Logs_to_a_Remote_Host_with_Syslog
https://github.com/Security-Onion-Solutions/security-onion/wiki/Syslog
Thanks,
Wes
Sorry if this is a dumb question, but can SO be installed on pfsense which is a freebsd box. Or could I use it as a sensor and sent the data back to the vm I run SO in?
--
Follow Security Onion on Twitter!
https://twitter.com/securityonion
---
You received this message because you are subscribed to the Google Groups "security-onion" group.
To unsubscribe from this group and stop receiving emails from it, send an email to security-onion+unsubscribe@googlegroups.com.
To post to this group, send email to security-onion@googlegroups.com.
Visit this group at https://groups.google.com/group/security-onion.
For more options, visit https://groups.google.com/d/optout.