I've successfully configured our XG Firewalls to push logs to our SIEM solution which works well, though when trying to trace source of DNS requests I can't find anything logged either locally on the XG, or anything on the SIEM other than a UDP port 53 request which doesn't help in determining the source as it doesn't include DNS name of the request, just source/destination IPs.
Is there any way I can enable DNS logging on the XGs and have DNS logs pushed to our SIEM solution?
This thread was automatically locked due to age.