Smoothwall Webproxy
ArchivedThe Smoothwall Webproxy application normalizes Smoothwall Webproxy events and enables you to analyze Smoothwall Webproxy data. You can further customize the searches to perform in-depth analysis.
Release Details
Package Details
- Normalization Package
- LP_Smoothwall Webproxy
Enhancement
A minor update has been done in the application’s normalizer for better signature handling.
Installation
Follow these steps to install the Smoothwall Webproxy v5.0.0 plugin:
- Download the Smoothwall Webproxy package from the Download section above.
- Add the required Smoothwall Webproxy as a device in LogPoint.
- Create a collection policy with the Syslog collector and appropriate processing policy.
- Assign the policy to the device.
Log Format
Expected Log Format
- Smoothwall Webproxy log format
Log Samples
<38>Sep 30 06:51:53 s_sys@webproxy1 sshd[24842]: Accepted publickey for replication from 10.50.136.17 port 54900 ssh2: DSA xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx:xx
To export data to LogPoint use Syslog collector on port 514 on the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.