<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic RE: How to create syslog for ArcSight format in ExtremeSwitching (EXOS/Switch Engine)</title>
    <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32385#M5966</link>
    <description>I am not sure about ArcSight but most SIEM programs have programs will have modules that will "equalize" to the database many syslog formats per device manufacturer.  Our SIEM product has what are called DSM modules that take many different syslog formats from hundreds of vendors so that the data presented is equal in the database.  Out SIEM has a DSM module specific for XOS and EOS boxes, please check with HP on what is available in your circumstance.  I tried checking the HP Enterprise site but was unable to search their support database.</description>
    <pubDate>Tue, 30 Aug 2016 06:25:00 GMT</pubDate>
    <dc:creator>Bill_Stritzinge</dc:creator>
    <dc:date>2016-08-30T06:25:00Z</dc:date>
    <item>
      <title>How to create syslog for ArcSight format</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32384#M5965</link>
      <description>My company use ArcSight log server, but it can't not recognize XOS log format. Did anyone know how to create XOS log for Arcsight format.....</description>
      <pubDate>Tue, 30 Aug 2016 05:37:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32384#M5965</guid>
      <dc:creator>Helpme</dc:creator>
      <dc:date>2016-08-30T05:37:00Z</dc:date>
    </item>
    <item>
      <title>RE: How to create syslog for ArcSight format</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32385#M5966</link>
      <description>I am not sure about ArcSight but most SIEM programs have programs will have modules that will "equalize" to the database many syslog formats per device manufacturer.  Our SIEM product has what are called DSM modules that take many different syslog formats from hundreds of vendors so that the data presented is equal in the database.  Out SIEM has a DSM module specific for XOS and EOS boxes, please check with HP on what is available in your circumstance.  I tried checking the HP Enterprise site but was unable to search their support database.</description>
      <pubDate>Tue, 30 Aug 2016 06:25:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32385#M5966</guid>
      <dc:creator>Bill_Stritzinge</dc:creator>
      <dc:date>2016-08-30T06:25:00Z</dc:date>
    </item>
    <item>
      <title>RE: How to create syslog for ArcSight format</title>
      <link>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32386#M5967</link>
      <description>It all depends on the format that is expected by the ArcSight log server. &lt;BR /&gt;
In EXOS you create separate log filters and modify the output for different purposes.&lt;BR /&gt;
&lt;BR /&gt;
More on the Event Management System/Logging can be found in the documentation:&lt;BR /&gt;
&lt;A href="http://documentation.extremenetworks.com/exos/EXOS_21_1/Status_Monitoring/c_using-the-event-management-systemlogging.shtml" target="_blank" rel="nofollow noreferrer noopener"&gt;http://documentation.extremenetworks.com/exos/EXOS_21_1/Status_Monitoring/c_using-the-event-manageme...&lt;/A&gt;&lt;BR /&gt;
&lt;BR /&gt;
Do you have an example of the format that ArcSight expect to receive? &lt;BR /&gt;
&lt;BR /&gt;</description>
      <pubDate>Tue, 30 Aug 2016 11:30:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremeswitching-exos-switch/how-to-create-syslog-for-arcsight-format/m-p/32386#M5967</guid>
      <dc:creator>Ron_Huygens</dc:creator>
      <dc:date>2016-08-30T11:30:00Z</dc:date>
    </item>
  </channel>
</rss>

