PAN syslog stream into AWS S3 bucket

cancel
Showing results for 
Search instead for 
Did you mean: 

PAN syslog stream into AWS S3 bucket

L1 Bithead

I am looking for creative ways to get my VM-300 instances to syslog directly into an S3 bucket for pickup by our logging systems. 

Given the PAN only has the ability to send syslog TCP to an endpoint I am not sure this is possible without some middleware.

Has anyone else figured something out to achieve this?

5 REPLIES 5

Cyber Elite
Cyber Elite

I haven't tried this but I wonder if you couldn't do this with CloudBerry and assigning a network drive on a PC that simply points to your S3 bucket. I had this running a while back with a Google Cloud Storage buget with some of my clients backups perfectly fine so I don't see why this wouldn't work there?

L2 Linker

Any solution ??

L2 Linker

@jmeurer , @BPry  , @Warby  -- Any pointers .

L2 Linker

You need a sidecar to move the data to S3.  It is documented here.  Rather than moving through to Lambda, you would use CloudWatch or Kinises to send the data to S3. 

https://aws.amazon.com/blogs/apn/monitoring-your-palo-alto-networks-vm-series-firewall-with-a-syslog...

 

Thanks for sharing , I will try to explore this option.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!