Forum Discussion

Meg Simmons's avatar
Meg Simmons
Brass Contributor
Aug 08, 2018

Cloud App Security - Continuous Log Issue

In the Cloud App Security portal I have followed the Instructions provided https://docs.microsoft.com/en-us/cloud-app-security/discovery-docker-ubuntu to configure continuous logs to be sent from my SonicWALL (syslog) to my Log Collector.  The log collector shows 'Connected' but is not receiving data. (See attached screenshot)

I have triple checked my settings in the SonicWALL and my Ubuntu server. 

I can confirm logs are flowing from the SonicWALL to the Ubuntu server but, how can I check if they are reaching the Cloud App Security portal?  

 

Note: we do not block outbound traffic

1 Reply

  • Meg Simmons's avatar
    Meg Simmons
    Brass Contributor
    In the script provided for configuring the log collector, one specific line caught my eye. "SYSLOG=false". If I'm using syslog instead of ftp, would I change this to "true"?

Resources