Zertificon Z1
ArchivedThe Zertificon Z1 application normalizes Zertificon Z1 SecureMail Gateway events and enables you to analyze Zertificon Z1 data. You can further customize the searches to perform in-depth analysis.
Release Details
Package Details
- Normalization Package
- LP_Zertificon Z1
Enhancement
A minor update has been done in the application’s normalizer for better signature handling.
Installation
Follow these steps to install the Zertificon Z1 v5.0.0 plugin:
- Download the Zertificon Z1 package from the Download section above.
- Add the required Zertificon Z1 as a device in LogPoint.
- Create a collection policy with the Syslog collector and appropriate processing policy.
- Assign the policy to the device.
Log Format
Expected Log Format
Zertificon Z1
Log Sample
2015-07-20 17:23:21,574 http-8443-2 INFO access| USER [abcuser] PAGE [X.509 Certificate Management>>Certificate Import Result] ACTION [CREATE] MESSAGE [user certificate has been successfully imported: fingerprint: 7bb7ca78962d8ca3cd0aab941573c9b9246c139a, e-mail: test@xyz.com] HOST [1.1.1.1]
To export data to LogPoint use Syslog collector on port 514 on the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.