Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Table of Contents
minLevel1
maxLevel7

Overview

This user guide describes the Oracle Cloud Device integration with Seceon SIEM to have a better visibility of threats happening in your environment.

Configuration Steps for Flow logs

  1. Sign in to your OCI console.

  2. Click on your profile icon and go to your user ID.

  3. In the resources section go to API Keys and select Add API Key.

  4. Click Download Private Key, download the private key and keep it in save place as it is one time downloadable only and click Add.

  5. Save all the configuration file field information (except key file field).

    • Note: if you missed something click on 3 dot of your generated API Key and select View Configuration File to get details again.

  6. In Logging go to Logs section, search Virtual Cloud Network and enable the logs service for the same.

  7. Go to our Seceon UI and under provisioning screen go to Cloud Configuration.

  8. In Flows section click Add and add the information asked i.e., configuration file details generated (step 5), upload your private key that you generated (step 4), Copy the OCID of the logs group and log service enabled for VCN Flow (Step 6) and click Save.

VERIFICATION OF CONFIGURATION

Verification can be done from UI.

Using UI

STEP 1: Log in to UI >> SYSTEM

...

STEP 2: >> LOGS AND FLOWS COLLECTION STATUS.

...