Security Compliance

Integrate and monitor Zywall firewall events with SEM

This article provides steps on how to configure and integrate Zywall FW connector to monitor Zywall events in SEM.

First published date

11/7/2018 7:00 PM

Last published date

11/7/2018 7:00 PM

Overview

This article describes how to configure and integrate Zywall FW connector to monitor Zywall events in Security Event Manager (formerly Log & Event Manager).

 

Product section

Security Event Manager

Resolution

Note: If you have problem configure syslog on port 514 on ZyWall, please contact the product vendor for assistance.

  1. Configure the ZyWall firewall syslog settings to forward logs to SEM.

    For more information, see:

    http://www.zyxel.com/tr/tr/guidemo/zyw70/h_Log_Settings.html (© 2020 Zyxel and/or its affiliates, available at https://www.zyxel.com/us/en/, obtained on January 31, 2020)

  2. In SEM, to configure the ZyWall connector, log into the Web Console and click Manage > Appliance > Connectors > Search for Zywall (Firewall)
  3. Click the gear icon, click New, and verify the log file location.
  4. For any unmatched data / no data in SEM web console refer to SEM console receives unmatched data events.

You can also complete this task in the HTML5 SEM Events Console.
 

Disclaimer: Please note, any content posted herein is provided as a suggestion or recommendation to you for your internal use. This is not part of the SolarWinds software or documentation that you purchased from SolarWinds, and the information set forth herein may come from third parties. Your organization should internally review and assess to what extent, if any, such custom scripts or recommendations will be incorporated into your environment.  You elect to use third party content at your own risk, and you will be solely responsible for the incorporation of the same, if any.