I
I
Ilya Flakin2012-08-23 10:32:31
Computer networks
Ilya Flakin, 2012-08-23 10:32:31

Need help setting up Stonegate Management Center (log server setup)?

There is Stonegate Firewall and Stonegate Management Center equipment for management on a separate machine.
Stonegate Management Center has the ability to accept logs from third party equipment.
So that it does not stand idle, I decided to start logs on it from all our network equipment (mainly dlink).
There is an instruction, but attempts to do it ended unsuccessfully.
Maybe someone had experience in setting up such a bundle.
At the moment, there are messages from the DWS-4026 equipment, but they swear:
Runtime data validation detected 3 records with invalid time, between 2012-08-22 19:18:19 and 2012-08-23 09:00:49. Data source: DWS-4026.
What time should be I can not understand.
Update. Over time, I figured out the log parser, I ignore the time that is written there, then there are no complaints.
Here's an example:
0fd6f0e8bca50cf49879029a28c8d5ac.png
I made two rules so that the necessary fields are selected - everything is fine on the test lines, but in reality it's just clear that a message has arrived and all the fields are empty.

Answer the question

In order to leave comments, you need to log in

2 answer(s)
A
amario, 2012-08-23
@amario

Synchronize, time on stonegate and long. in particular, specify the same ntp server.
You have a time difference of 16 hours.

I
Ilya Flakin, 2012-08-24
@ILYHA

the time is synchronized, this record says that for the period from 2012-08-22 19:18:19 to 2012-08-23 09:00:49 3 records were found with the wrong time, I don’t see anything about the difference of 16 hours.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question