Hello community , how i can identify forwarder logs in the audit logs ?
thanks in advance
Solved
Forwarder audit logs
Best answer by ashnaiku
You (or your Administrator) will need access to GCP to start with. Once the logs are forwarded you will see it in SIEM.
You will need to make change in GCP Console --> Security-->Google SecOps--> Ingestion
On this tab Enable -
1.Google Cloud logging
Ingest and analyze data from Google Cloud Logging.
2.Cloud Asset Metadata
Ingest and analyze data from Google Cloud Asset Inventory.
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
