Securosys365 - Log Management
With Securosys365 - DKE you can configure the following Logging integrations:
- Splunk
- Datadog
In this guide we will follow the setup the Splunk Log integration.
Login into the Securosys365 - DKE
- Login to Securosys365 - DKE Cockpit
Log Management Setup
- In the Administration Tab open Securosys365 - DKE: Log Management Settings
Create new Syslog
- Click Create new Syslog.
- In the Splunk integration card, click Install Now
- Enter a name for the Log Management Provider
- Enter the Ip-Address of the Splunk-API
- Enter Splunk Splunk Port and Splunk Index
- Provide the Splunk HEC Token
More information in the official Splunk - HTTP Event Collector guide.
- Test Connection
- Save
Enable Splunk Logging
- In the Administration Tab click Settings
- Select the Tab Audit Record Retention
- Enable AuditLog Database Enabled
- Save all