Skip to content
Discussion options

You must be logged in to vote

It was super easy to accomplish this. I allowed the source IP into Administration>Configuration>firewall>hostgroups>syslog
Then I simply enabled the service on the AD Audit server, and I can see the logs coming into Security Onion. Very smooth!

Replies: 2 comments 1 reply

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
1 reply
@kspringer-maf
Comment options

Answer selected by kspringer-maf
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
2 participants