cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

Who rated this post

L5 Sessionator

Hi @S.Galabada084004,

 

You have two options to forward the XDR events to a third party tool:

 

  • Log forwarding: allows you to forward the Issues, Cases and audit logs to external services like is described in this document.
  • Event forwarding: this is an add-on that allows you to forward the RAW logs to a Google Cloud bucket provided by Palo Alto. Then from that bucket you can extract the logs with any third party tool. The logs are stored there up to 7 days. You can find more information in this doc.

If this reply answer your question, please mark it as the solution.

 

Thanks

JM

View solution in original post

Who rated this post