Skip to main content
Skip table of contents

Syslog - Guardium CEF

Device Details

Device Name

Guardium

Vendor

IBM

Device Type

Guardium

Supported Model Name/Number

N/A

Supported Software Version

N/A

Collection Method

Syslog

Configurable Log Output

CEF

Log Source Type

Syslog - Guardium CEF

Log Processing Policy

LogRhythm Default V 2.0

Exceptions

N/A

Additional Information

https://www.ibm.com/docs/en/guardium/12.x?topic=integration-cef-mapping

https://legacy-documentation.securonix.com/onlinedoc/Content/Connectors/content/active-deployment-guides/ibm-guardium-syslog-cef.htm

https://www.ibm.com/support/pages/shipping-guardium-syslog-remote-server

Supported Log Messages

(List of LR tags used to parse the log information for each message type)

Type

Product Version

Supported Schema Fields

Catch-All

N/A

<tag1>, <severity>

Guardium CEF Log Messages

N/A

<vendorinfo>, <processid>, <process>, <tag1>, <severity>, <objecttype>, <reason>, <version>, <sname>, <parentprocesspath>, <object>, <dname>, <dip>, <dport>, <sip>, <sport>, <protname>, <subject>

Revision History

KB Version

Log Type

Change Type

Details

KB 7.1.700.0

Syslog - Guardium CEF

New Device Documentation

N/A

JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.