I am in the process of setting up a server for syslog relay to Azure Sentinel. Currently my Palo Alto systems forward their CEF logs to LogRythm. I am looking for a way to set up my Palo Alto to forward the same logs to the new syslog relay server. My question is does Palo Alto allow configuration for forwarding to multiple SiEMs at the same time? in my case to the existing LogRythm and newly setup Azure Sentinel?
... View more