|
A app for monitor Juniper logs srx, sa etc would be cool. |
|
I already have some field extractions that I made for SRX Created Session Logs
Closed Session Logs
|
|
Jerrad, Any chance you have a field extraction for the IDS reporting on the SRX? Here's a sample of the security log output: Mar 14 09:43:50 Mar 14 09:43:50 RT_IDS: %USER-3-RT_SCREEN_TCP: Port scan! source: :80, destination: :27743, zone name: untrust, interface name: ae1.0 |
|
Never mind :) I've been able to create these extractions myself. EXTRACT-RT_SCREEN_ICMP
EXTRACT-RT_SCREEN_TCP
EXTRACT-RT_SCREEN_IP
Hope this helps others. |
