Fwd: Sizing Architecture follow up // Seculibrium & Wazuh

29 views
Skip to first unread message

Hitesh Rahangdale

unread,
Apr 21, 2024, 11:16:27 PM4/21/24
to Wazuh | Mailing List
Hello,

We have configured RSYSLOG for Switch Neatgear GS724T V4 and Firewall Sophos XGS126 However we are unable to get logs on Wazuh Dashboard.

image.png

Firewall Config Syslog

image.png

NeatGear Switch Syslog Config 

image.png

RSYSLOG CONFIG FOR SOPHOS -192.168.2.1 & NETGEAR 192.168.2.128
However 

image.png

image.png
No log file created for NETGEAR Switch named as NETGEAR.log
image.png

Osec Config for RSYSLOG as wazuh Agent

image.png
Logging enabled on wazuh agent 

image.png

image.png

Manager Configuration txt file attached for reference. I have tried many workarounds. Some config script data might get mismatched like some rules and decodes also for firewall logs and switches also kindly suggest where we missed to get logs on wazuh dashboard.



Thanks & Regards,
Hitesh
Manager_192.168.2.155 osec config.txt

Hitesh Rahangdale

unread,
Apr 21, 2024, 11:18:27 PM4/21/24
to Wazuh | Mailing List
Manager_192.168.2.155 osec config.txt
Reply all
Reply to author
Forward
0 new messages