Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 

Configuring Proofpoint Enterprise Protection and Enterprise Privacy DSM to Communicate with JSA

 

To collect all audit logs and system events from your Proofpoint Enterprise Protection and Enterprise Privacy DSM, you must add a destination that specifies JSA as the Syslog server.

  1. Log in to the Proofpoint Enterprise interface.
  2. Click Logs and Reports.
  3. Click Log Settings.
  4. From the Remote Log Settings pane, configure the following options to enable Syslog communication:
    1. Select Syslog as the communication protocol.

  5. Type the IP address of the JSA console or Event Collector.
  6. In the Port field, type 514 as the port number for Syslog communication.
  7. From the Syslog Filter Enable list, select On.
  8. From the Facility list, select local1.
  9. From the Level list, select Information.
  10. From the Syslog MTA Enable list, select On.
  11. Click Save