This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Pushing logs to AWS Cloudwatch logs

Hi

I have Sophos UTM 9, UTM on AWS, version 9.509-3. Deployment Type: Standalone

I am trying to find out how to enable the AWS Cloudwatch Log agent on the UTM device, but I can't find out how. Do you have any hists/articles to read?

I found these topics:

* https://community.sophos.com/products/unified-threat-management/f/utm-on-aws/84339/cloudwatch-logs-not-working however I can't find the "aws-scritpts-mon" dir 

loginuser@sophos:/home/login > ls -l
total 0
or with  sudo find / -iname "mon-*.pl"

https://community.sophos.com/products/unified-threat-management/b/utm-blog/posts/sophos-utm-9-411-on-aws-release-notes says 

Second, we've added all UTM logs to the CloudWatch Logs Agent, which provides an automated way to send log data to CloudWatch Logs.

but I can't understand if this is for the standalone version. 

Regards

Vangelis



This thread was automatically locked due to age.
Parents Reply Children
  • I've barely played with this, Vangelis, so I only know to go one step at a time.  When I created a UTM instance, I did not select to create a key pair, but I suspect that you cannot use CloudWatch if you didn't create the key pair when you launched the instance.  What happens if you start over doing that?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA