Hi SIEM Team,
Could you please us that we are unable to Collete the Zabbix application logs? The Zabbix application is running on Linux Centos 8 .6 . The server has been hosted on On-premises.
Solved! Go to Solution.
Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder.
BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.
Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder.
BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.
Thanks for the information