How to Send SNMP Traps for WildFire Logs

How to Send SNMP Traps for WildFire Logs

14700
Created On 09/25/18 17:50 PM - Last Modified 06/17/21 20:52 PM


Environment


  • Palo Alto Firewall
  • PAN-OS 8.1 and above
  • SNMP v2 traps for Wildfire Logs


Resolution


  1. Configure an SNMP Trap Server Profile under GUI: Device > Server Profiles > SNMP Trap and click Add
    • Server - Specify a name for the SNMP trap destination name (up to 31)
    • Manager - Specify the IP address of the trap destination
    • Community - Specify the community string required to send traps to the specified destination (default public)
      Screen Shot 2014-06-02 at 8.20.18 PM.png
  2. Configure Physical Location and Email address under GUI: Device > Setup > Operations > SNMP Setup for version V2c
    • Physical - Location that will specify the physical location of the firewall
    • Contact -  Enter the name or email address of the person responsible for maintaining the firewall
      Screen Shot 2014-06-02 at 8.28.56 PM.png
  3. Configure the Log Forwarding Profile for WildFire Settings under GUI: Objects > Log Forwarding and click "Add". The action below displays adding a new Log forwarding Profile. Note that one can also Edit the existing Log Forwarding Profile.
Log Forwarding Profile
 
  • Configure a Name, Description and click "Add"
 
Log Forwarding Profile for wildfire
  • Click "Add" again and select the log type as Wildfire under the drop-down menu. Then select the configured SNMP server under the SNMP setting
  • Click OK
Screen Shot 2014-06-02 at 8.34.52 PM.png
  • Confirm the settings, click OK and then commit the configuration.

 



Actions
  • Print
  • Copy Link

    https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClKGCA0&refURL=http%3A%2F%2Fknowledgebase.paloaltonetworks.com%2FKCSArticleDetail

Choose Language