Overview

We are providing you with the steps to integrate your RV320 and RV325 VPN Router Series with Seceon SIEM so One can have Comprehensive visibility and Proactive Threat Detection in your Environment. There will be a log transfer between your firewall to APE(Analytics and Policy Engine) via CCE (Collection and Control Engine ). In this document, we are guiding you through the steps for Log forwarding.

Applicable Devices

System Log Configuration

Step1-To access the System Log

Log in to the Web Configuration Utility and navigate to Log > System Log. This will open the System Log page:

Step2: Configure System Logs on System Log Servers

Step3: Log Settings

1. Check the check boxes of the events that will trigger a log entry.

Alert Logs: These logs are created when an attack or attempted attack has occurred, such as:

General Logs: These logs are created when general network actions occur, such as:

2. Click "Save" to complete the configuration of the Log Settings.

Note: To clear the current log, click "Clear Log

Verification of configuration

Verification of configuration can be done in two ways:

Both methods can be used to ensure that the system is properly configured and working as intended.

Using UI

STEP 1:Log in to UI >> System

STEP 2: >> Logs and flows collection status

STEP 3: >>To verify the source device IP from the UI:

This will allow you to ensure that the system is properly identifying the source device IP and that it matches the expected IP address..