Linux/Windows logs ingestion from multiple sites to chronicle SIEM

Hi ,
does anyone has any experience to ingest multiple sites linux or windows logs to chronicle SIEM

0 2 417
2 REPLIES 2

Hi Praveenjain45,

Yes, you can utilize Google Security Operations forwarders for Linux, Windows, and even docker!

Please find the docs below for reference:

https://cloud.google.com/chronicle/docs/install/forwarder-linux

https://cloud.google.com/chronicle/docs/install/forwarder-windows

https://cloud.google.com/chronicle/docs/install/docker-forwarder-windows

You're also able to manage your forwarders from the Google Security Operations UI:

https://cloud.google.com/chronicle/docs/install/forwarder-management-configurations

Hope this helps,

 

Hi Ben,

Thanks for the help, I have completed the ingestion through the forwarder method and it worked.