Skip to main content
Solved

zabbix application logs

  • December 15, 2023
  • 2 replies
  • 18 views

Forum|alt.badge.img+5

Hi SIEM Team,

Could you please us that we are unable to Collete the Zabbix application logs? The Zabbix application is running on Linux Centos 8 .6 . The server has been hosted on On-premises.

Best answer by deeshu

Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder. 

BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.

2 replies

Forum|alt.badge.img+6
  • Bronze 2
  • Answer
  • December 17, 2023

Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder. 

BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.


Forum|alt.badge.img+5
  • Author
  • New Member
  • December 18, 2023

Thanks for the information