-
Notifications
You must be signed in to change notification settings - Fork 110
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Palo Alto (formally CloudGenix) Prisma SD-WAN support #2179
Comments
Can you please share anonymized sample of the event as well after capturing pcap ( statistics > conversations > udp/tcp -> follow stream in wireshark). |
Here are examples of two of the three event types (I will likely not have an alert for a few more days)
A couple of notes:
Thank you for your help. |
Here are some alarm events:
|
New parsers added in #2298 |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Please include support for the Palo Alto Prisma SD-WAN ION appliances (formally CloudGenix ION). To avoid confusion and possible disambiguation in the future, be aware there are other services in the Prisma line.
System events are in the following format:
https://docs.paloaltonetworks.com/prisma/prisma-sd-wan/prisma-sd-wan-admin/prisma-sd-wan-sites-and-devices/use-external-services-for-monitoring/syslog-server-support-in-prisma-sd-wan
Flow information is in the following format
https://docs.paloaltonetworks.com/prisma/prisma-sd-wan/prisma-sd-wan-admin/prisma-sd-wan-sites-and-devices/use-external-services-for-monitoring/syslog-server-support-in-prisma-sd-wan/syslog-flow-export
The text was updated successfully, but these errors were encountered: