Security Onion not ingesting SonicWall Logs #12779
Replies: 2 comments
-
Have you tried using tcpdump to verify the traffic is hitting the node you're sending the logs to? |
Beta Was this translation helpful? Give feedback.
0 replies
-
Finally resolved, the port we supposed to be reach by the firewall was not the same as in the portgroups, Thanks. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Hello!!,
I'm new to Security Onion and dont know why i'm having some troubles while trying to get SonicWall logs into Security onion,
My Security Onion systemas is standalone and i have make all the config that this videos makes: https://www.youtube.com/watch?v=aoH8qZwAxek, but instead for PFsense, for SonicWall Firewall, the problem comes when i finally configure all things, and i wait and wait for logs to enter in Security Onion, but nothing happens, here is the "schedule" i made.
SonicWall is configured to send logs into SO ip and port (port same configured in SO and agent)
So that's the problem, hope someone could help me, and sorry if my english is not the best,
Have a nice day!
Beta Was this translation helpful? Give feedback.
All reactions