Jump to content

Recommended Posts

Tahmeed702
Posted

I wanna export logs to my IBM Qradar SIEM solution in LEEF format , how to configure in KSC to connect with SIEM and how to configure connection in SIEM to integrate with KSC , can anyone explain in details. I am beginner in SIEM and KSC

  • 2 weeks later...
Posted
On 12/12/2024 at 6:11 PM, Diego Moraes said:

Hello,

Documentation for export is here.

https://support.kaspersky.com/KSC/14.2/en-US/151328.htm

Here is a step by step explanation of how to do this.

 

This Only explains the connection settings in KSC , but how can i set specific port number in IBM so that KSC can send logs to IBM Qradar . I have deployed IBM Qradar In my VM.

image.thumb.png.818da562ae7949712b21ab0e3896d06a.png

 

Tahmeed702
Posted

I tried to connect IBM Qradar Via syslog but got following errors.

image.thumb.png.f13d7a2c79fe6b267cfadd5d5c8d62b1.png

image.thumb.jpeg.f89bff8078372b1e33aad72b4be8442a.jpeg

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...