Skip to main content

Linux/Windows logs ingestion from multiple sites to chronicle SIEM

  • January 3, 2024
  • 2 replies
  • 22 views

Forum|alt.badge.img+1

Hi ,
does anyone has any experience to ingest multiple sites linux or windows logs to chronicle SIEM

2 replies

Ben_T
Staff
Forum|alt.badge.img+4
  • Staff
  • June 3, 2024

Hi Praveenjain45,

Yes, you can utilize Google Security Operations forwarders for Linux, Windows, and even docker!

Please find the docs below for reference:

https://cloud.google.com/chronicle/docs/install/forwarder-linux

https://cloud.google.com/chronicle/docs/install/forwarder-windows

https://cloud.google.com/chronicle/docs/install/docker-forwarder-windows

You're also able to manage your forwarders from the Google Security Operations UI:

https://cloud.google.com/chronicle/docs/install/forwarder-management-configurations

Hope this helps,

 


Forum|alt.badge.img+1
  • Author
  • New Member
  • June 5, 2024

Hi Ben,

Thanks for the help, I have completed the ingestion through the forwarder method and it worked.