cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Who rated this post

Cyber Elite
Cyber Elite

Hello @Kandarp_Desai

 

you should be able to accomplish this by placing a filter. Could you navigate to: Panorama > Collector Groups > [Collector Group Name] > Collector Log Forwarding > Traffic > [Name of log forwarding profile], then put into filter field what you want to exclude. For example send to syslog server everything except deny log for ip address:

 

 !(addr in X.X.X.X) and (action eq deny)

 

PavelK_0-1656506451153.png

 

Kind Regards

Pavel

Help the community: Like helpful comments and mark solutions.
Who rated this post