Suricata
The JSA DSM for Suricata collects Syslog events from a Suricata device.
To integrate Suricata with JSA, complete the following steps:
-
If automatic updates are not enabled, RPMs are available for download from the Juniper Downloads. Download and install the most recent version of the following RPMs on your JSA Console:
-
TLS Syslog Protocol RPM
-
Suricata DSM RPM
-
-
Configure your Suricata device to send events to JSA. For more information, see Configuring Suricata to Communicate with JSA.
-
If JSA does not automatically detect the log source, add a Suricata log source on the JSA Console.