Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Central - logs FW

Dears, good morning,

We are setting up a SIEM in the cloud and I am using the SOPHOS API to share the tool's logs. I have already configured API profiles such as reading and forensics and have not been successful.

I have already made all the necessary configurations so that SOPHOS Central receives logs from FW SOPHOS, but in my SIEM, client VPN logs and traffic logs in general do not appear, for example. According to the documentation below, there is no "event type" for client VPN, etc.

Is there any way for my SIEM to receive logs with complete information about everything that passes through FW?

support.sophos.com/.../KB-000038309



This thread was automatically locked due to age.