The following task describes how to start forwarding logs to Strata Logging Service from firewalls that are managed by Strata Cloud Manager.
Click ManageConfigurationNGFW and Prisma AccessSecurity ServicesSecurity Policy
Edit the Log Settings > Logging in Strata Logging Service
and select Log at the Session Start/End
depending on your use case. By default all security Policy has Logging to Strata Logging Service enabled, unless you explicitly disabled it.
Device logs and EAL logs are forwarded to Strata Logging Service by
default.
To forward log types that are generated when a policy match occurs—Traffic,
Threat, WildFire® Submission, URL Filtering, Data Filtering, and
Authentication logs—create a Log Forwarding profile to each policy rule for
which you want to forward logs. Click External Log
ForwardingCreate New.
In the log forwarding profile match list, add each log type that you want to
forward.
Verify that the firewall logs are forwarded to Strata Logging Service.
Click the Incidents and Alerts > Log Viewer in
Strata Cloud Manager, so that you can view and filter Strata Logging Service logs.