When receiving events, TrendAI™ Email
Security stores the events in its
database and forwards syslog messages to an external syslog server in a structured
format,
which allows third-party application integration.
The Syslog Settings screen is composed of the following tabs:
-
Syslog Forwarding: Specifies the mapping between syslog servers and different types of logs.
-
Syslog Server Profiles: Enables you to add, edit or delete syslog servers for syslog forwarding.
To ensure TrendAI™ Email
Security can properly forward syslog messages,
configure your firewall to accept connections from the following IP addresses or CIDR
blocks:
-
United States:
18.208.22.64/2618.208.22.128/2518.188.9.192/2618.188.239.128/26 -
Germany:
18.185.115.0/2518.185.115.128/2634.253.238.128/2634.253.238.192/26 -
Australia:
13.238.202.0/2513.238.202.128/26 -
Japan:
18.176.203.128/2618.176.203.192/2618.177.156.0/2618.177.156.64/2615.168.56.0/2515.168.49.64/2615.168.56.128/26 -
Singapore:
13.213.174.128/2513.213.220.0/26 -
India:
3.110.59.128/253.110.71.192/26 -
United Arab Emirates:
3.29.202.0/253.29.194.192/26 -
United Kingdom:
18.98.163.192/2618.98.164.128/25 -
Canada:
18.99.2.128/2618.99.2.0/25
NoteBe aware that TrendAI™ Email
Security keeps syslog messages for 7 days
if your syslog server is unavailable. Messages older than 7 days will not be restored
when
your syslog server recovers.
|
