User Tools

Site Tools


infoblox_nios_x:logging

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
infoblox_nios_x:logging [2025/01/07 18:24] bstaffordinfoblox_nios_x:logging [2026/01/21 07:48] (current) – removed bstafford
Line 1: Line 1:
-===== NIOS-X Logging ===== 
-  * LEEF (Log Event Extended Format) — The LEEF event format is a proprietary event format, which allows hardware manufacturers and software product manufacturers to read and map device events specifically designed for IBM QRadar integration. 
-  *  CEF (Common Event Format) — The CEF standard format is an open log management standard that simplifies log management. CEF allows third parties to create their own device schemas that are compatible with a standard thatis used industry-wide for normalizing security events. 
- 
-When using "Syslog" as a destination in Data Connector, [[https://docs.infoblox.com/space/BloxOneDDI/186681592/Setting+up+Syslog|you can choose CEF or LEEF]], both of which are fully compliant with RFC 5424. The headers (PRI, VERSION, TIMESTAMP, HOSTNAME, APP-NAME, PROCID, MSGID, and STRUCTURED-DATA) are added, and the date/time format is also updated. 
-===== Endpoint Logs ===== 
- 
-When users try and disable Endpoint, it is logged in CSP under Monitor > Logs > Security logs (search for b1e.utility). 
  
infoblox_nios_x/logging.1736274282.txt.gz · Last modified: by bstafford