Configuring Suricata to Communicate with JSA
To send events to JSA, you must configure a Syslog integration.
Before you begin
You must have access to the Suricata device and have the permissions to write to configuration files and to restart services. You need a username and password, such as Windows or Linux login information, for the system where you installed Suricata.
Ensure that rsyslog is installed on the system where you installed Suricata. For more information, see the rsyslog website.