zabbix application logs

Hi SIEM Team,

Could you please us that we are unable to Collete the Zabbix application logs? The Zabbix application is running on Linux Centos 8 .6 . The server has been hosted on On-premises.

Solved Solved
0 2 255
1 ACCEPTED SOLUTION

Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder. 

BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.

View solution in original post

2 REPLIES 2

Chronicle has four options for data ingestion. Where your Zabbix logs are stored? Does it support syslog forwarding or storing the log files in a central server or end number of endpoints? If the log files are in *nix then you can leverage rsylog to foward it to Chronicle Forwarder. 

BTW. Chronicle doesn't have a parser for Zabbix so you'll have to write a custom parser for it.

Thanks for the information