Learn more about collecting Cisco ASA firewall and AnyConnect VPN logs using a Syslog Collector applet and content pack integration in Cortex XDR.
You can configure collecting Cisco ASA firewall and AnyConnect VPN logs using a Broker VM Syslog Collector applet or with a content pack integration:
Cisco ASA firewalls and AnyConnect vendor | Description |
|---|---|
Syslog Collector applet overview | If you use Cisco ASA firewalls or Cisco AnyConnect VPN, you can forward Cisco ASA firewall and AnyConnect VPN logs to Cortex XDR using the Broker VM Syslog Collector applet in a CISCO format. |
Link to Syslog Collector applet instructions | |
Link to content pack/integration instructions | The Cisco ASA content pack interacts with the Cisco Adaptive Security Appliance Software via an API to manage interfaces, rules, and network objects. The content pack includes the following integration:
|