<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Global Protect Logs in CEF Format in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/349759#M413</link>
    <description>&lt;P&gt;GlobalProtect logs will come in SYSTEM messages.&lt;/P&gt;&lt;P&gt;however PaloAlto is sending the complete message inside 1 filed $msg.&lt;/P&gt;&lt;P&gt;this need to be fixed by PaloAlto team&lt;/P&gt;</description>
    <pubDate>Wed, 16 Sep 2020 12:21:18 GMT</pubDate>
    <dc:creator>BARaha</dc:creator>
    <dc:date>2020-09-16T12:21:18Z</dc:date>
    <item>
      <title>Global Protect Logs in CEF Format</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/330989#M161</link>
      <description>&lt;P&gt;Hi Everyone,&lt;/P&gt;&lt;P&gt;I need to send Global Protect logs to Arcsight connector in CEF format.&lt;/P&gt;&lt;P&gt;looking through all documentations of CEF configuration Guide that are available, there is nothing mentioned about Global Protect logs and how to convert them to CEF format.&lt;/P&gt;&lt;P&gt;Anyone has an idea how to accomplish this ?&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2020 06:34:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/330989#M161</guid>
      <dc:creator>A.Kassis</dc:creator>
      <dc:date>2020-06-02T06:34:12Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Logs in CEF Format</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/332450#M178</link>
      <description>&lt;P&gt;Hi Armanka,&lt;BR /&gt;&lt;BR /&gt;Yes, GlobalProtect log type is not mentioned in the CEF Configuration Guide:&amp;nbsp;&lt;BR /&gt;&lt;A href="https://docs.paloaltonetworks.com/content/dam/techdocs/en_US/pdf/cef/pan-os-91-cef-configuration-guide.pdf" target="_blank"&gt;https://docs.paloaltonetworks.com/content/dam/techdocs/en_US/pdf/cef/pan-os-91-cef-configuration-guide.pdf&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;It's a deployment area, I would suggest to please first check with your SE and Account Team and open a Support Ticket on this.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Salman&lt;/P&gt;</description>
      <pubDate>Mon, 08 Jun 2020 22:40:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/332450#M178</guid>
      <dc:creator>sahmed</dc:creator>
      <dc:date>2020-06-08T22:40:48Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Logs in CEF Format</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/346088#M375</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Could you please provide details on below points on&amp;nbsp;Global Protect&lt;BR /&gt;1) At first, is it possible at all to generate Global Protect logs in CEF ?&lt;BR /&gt;2) what are other different log formats(ex: syslog, cef etc) it can generate to send data to different SIEM solutions(ex: Arcsight, IBM QRadar) solution for integration??&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2020 16:57:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/346088#M375</guid>
      <dc:creator>Sreeram</dc:creator>
      <dc:date>2020-08-31T16:57:59Z</dc:date>
    </item>
    <item>
      <title>Re: Global Protect Logs in CEF Format</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/349759#M413</link>
      <description>&lt;P&gt;GlobalProtect logs will come in SYSTEM messages.&lt;/P&gt;&lt;P&gt;however PaloAlto is sending the complete message inside 1 filed $msg.&lt;/P&gt;&lt;P&gt;this need to be fixed by PaloAlto team&lt;/P&gt;</description>
      <pubDate>Wed, 16 Sep 2020 12:21:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/global-protect-logs-in-cef-format/m-p/349759#M413</guid>
      <dc:creator>BARaha</dc:creator>
      <dc:date>2020-09-16T12:21:18Z</dc:date>
    </item>
  </channel>
</rss>

