Syslog - log parsing

Regular Member

Syslog - log parsing

Hello,

I have started using new syslog feature on my PMS 11.31. Do You have any expirience with parsig logs for SIEM? I am using IBM Qradar and it looks like I will have to parse information collected from Fsecure logs manualy. Do You have any xml file prepared which could help me with that?

Qradar DSM for F-secure would be ideal.