<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Integration between CDL and Rapid7 InsightIDR not working in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/integration-between-cdl-and-rapid7-insightidr-not-working/m-p/524903#M3299</link>
    <description>&lt;P&gt;I am working on the integration between CDL and R7 IDR SIEM and this is not working. I don't get pass the test connection on CDL.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.rapid7.com/insightidr/palo-alto-cortex-data-lake/" target="_blank"&gt;https://docs.rapid7.com/insightidr/palo-alto-cortex-data-lake/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server&lt;/A&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am getting connection time out, I have followed these steps but the syslog server seems to be missing the trsuted certificate needed for communication with CDL. The machine is an Ubuntu machine and I have generated a cert using openssl req -x509 command.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can anyone share if have don this integration before, and how can I get a cert from the trusted certificates for CDL?&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/trusted-root-ca-log-forwarding-app#id943bec2e-b271-4999-af50-634bf8b503f2" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/trusted-root-ca-log-forwarding-app#id943bec2e-b271-4999-af50-634bf8b503f2&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&lt;/P&gt;</description>
    <pubDate>Thu, 22 Dec 2022 22:00:29 GMT</pubDate>
    <dc:creator>tamara.gm</dc:creator>
    <dc:date>2022-12-22T22:00:29Z</dc:date>
    <item>
      <title>Integration between CDL and Rapid7 InsightIDR not working</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/integration-between-cdl-and-rapid7-insightidr-not-working/m-p/524903#M3299</link>
      <description>&lt;P&gt;I am working on the integration between CDL and R7 IDR SIEM and this is not working. I don't get pass the test connection on CDL.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.rapid7.com/insightidr/palo-alto-cortex-data-lake/" target="_blank"&gt;https://docs.rapid7.com/insightidr/palo-alto-cortex-data-lake/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server&lt;/A&gt;&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am getting connection time out, I have followed these steps but the syslog server seems to be missing the trsuted certificate needed for communication with CDL. The machine is an Ubuntu machine and I have generated a cert using openssl req -x509 command.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can anyone share if have don this integration before, and how can I get a cert from the trusted certificates for CDL?&amp;nbsp;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/trusted-root-ca-log-forwarding-app#id943bec2e-b271-4999-af50-634bf8b503f2" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/trusted-root-ca-log-forwarding-app#id943bec2e-b271-4999-af50-634bf8b503f2&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 22:00:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/integration-between-cdl-and-rapid7-insightidr-not-working/m-p/524903#M3299</guid>
      <dc:creator>tamara.gm</dc:creator>
      <dc:date>2022-12-22T22:00:29Z</dc:date>
    </item>
    <item>
      <title>Re: Integration between CDL and Rapid7 InsightIDR not working</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/integration-between-cdl-and-rapid7-insightidr-not-working/m-p/525347#M3304</link>
      <description>&lt;P&gt;Hi Tamara&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server" target="_blank"&gt;https://docs.paloaltonetworks.com/cortex/cortex-data-lake/cortex-data-lake-getting-started/get-started-with-log-forwarding-app/forward-logs-from-logging-service-to-syslog-server&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Check Step 11. You can download client and CA cert and use them in NXLog app.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 28 Dec 2022 08:45:43 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/integration-between-cdl-and-rapid7-insightidr-not-working/m-p/525347#M3304</guid>
      <dc:creator>etugriceri</dc:creator>
      <dc:date>2022-12-28T08:45:43Z</dc:date>
    </item>
  </channel>
</rss>

