Safenet
ArchivedThe SafeNet application normalizes SafeNet events and enables you to analyze SafeNet data using pre-set dashboard views. You can further customize the dashboard and searches to perform in-depth analysis.
Release Details
Package Details
- Dashboard Packages
- LP_Safenet KeySecure
- LP_Safenet 2FA
- Normalization Packages
- LP_SafeNet KeySecure
- LP_Safenet 2FA
Enhancement
Installation
Follow these steps to install the Safenet v5.0.0 plugin:
- Download the Safenet package from the Download section above.
- Add the required Safenet devices in LogPoint.
- Create a collection policy with the Syslog collector and appropriate processing policy.
- Assign the policy to the device.
- Add the dashboard.
Log Formats
Expected Log Format
Safenet 2FA
Log Sample
<46>1Feb 1805:42:37 LPLP0 SASLogging - Auth - At 18/02/2016 05:42:33, LP.local(LP.local) from 1.1.1.1 did AUTH_ATTEMPT using 312732193 resulting in AUTH_SUCCESS.
Expected Log Format
Safenet KeySecure
Log Sample
<142>May 31 08:35:02 SFILE-FS-P03.LogPoint.com InSystem: 2016-05-31 08:35:02 SFILE-FS-P03.LogPoint.com NTP: Synchronized clock via NTP: Successfully slewed time by -0.134723 seconds using server 1.2.2.1
To export data to LogPoint use Syslog collector on port 514 on the LogPoint server.
Expected Log Format
Safenet 2FA
Log Sample
<46>1Feb 1805:42:37 LPLP0 SASLogging - Auth - At 18/02/2016 05:42:33, LP.local(LP.local) from 1.1.1.1 did AUTH_ATTEMPT using 312732193 resulting in AUTH_SUCCESS.
Expected Log Format
Safenet KeySecure
Log Sample
<142>May 31 08:35:02 SFILE-FS-P03.LogPoint.com InSystem: 2016-05-31 08:35:02 SFILE-FS-P03.LogPoint.com NTP: Synchronized clock via NTP: Successfully slewed time by -0.134723 seconds using server 1.2.2.1
To export data to LogPoint use Syslog collector on port 514 on the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.