Paessler PRTG set up as syslog server for Securepoint UTM
Last adaption: 08.2022
New:
- Reference to unencrypted transmission
notempty
This article refers to a Resellerpreview
- Foreword
Syslog data from the UTM can be captured with third-party solutions.
Shown here is the example of PRTG from Paessler.
Since the syslog is not encrypted, a VPN tunnel should always be used when connecting via internet
Requirement
- Installed PRTG on a Windows system
(Download here: https://www.paessler.com/prtg)
See also system requirements for PRTG - Sufficient license for the additional sensors to monitor the UTM
- Syslog for a UTM corresponds to 1 sensor
- the freeware version allows commercial use and includes up to 100 sensors
PRTG requires its own sender email address to send status emails.
If the syslog server with PRTG is not located within your own mail infrastructure, it can lead to the rejection of mails even if the UTM is configured correctly (Fake sender).
A workaround for this is, for example, an Allow-List mail filter rule for a monitoring mail address or adding to the allowed mail server IPs.
Preliminary configuration on the UTM
Configuration PRTG network monitor
- Select the devices menu in the dashboard
- Find IP address of the UTM and select Add sensor
- Select syslog sensor
- Configure and create syslog sensor
- Fully configured sensor provides live data from the UTM