What configuration should be done on sophos and graylog to get logs from sophos

What configuration should be done on sophos and graylog to get logs from sophos

Hi @adiya_v

You could setup a syslog receiver on graylog and in graylog you can setup syslog to send messages to your graylog server.

Kind Greetings,

Arie

I did’t get this, can’t we create a syslog tcp input in graylog?

You can do thaat in System > Inputs:

for sophos what should be the input?

You can try syslog UDP and see if that works for your needs

then what should be the configuration in sophos?

check their documentation

sophos send udp or tcp traffic?

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.