Skip to content
Discussion options

You must be logged in to vote

I am not a maintainer, so I can only speak to my experience on this.

if i want to parse fortinet i need to configure the management node to accept syslog 9004 udp, correct ?

Yes. See the link below

should i need to configure filebeat module on the managers global.sls or minion's sls ?

I have one manager and three minions. I needed to configure it on the manager and all three minions sls then run the salt highstate command. I am not sure if this is best practice, I just know it works for me.

so-allow, how do i use it to configure the firewall ?

This is what I used. You will also need to add a portgroup and hostgroup

would appreciate a walkthrough

infosecgoon's info in here is solid #…

Replies: 1 comment 6 replies

Comment options

You must be logged in to vote
6 replies
@udi-mosh
Comment options

@udi-mosh
Comment options

@kwwv
Comment options

Answer selected by udi-mosh
@udi-mosh
Comment options

@udi-mosh
Comment options

@kwwv
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
2 participants