Configuring your Avaya VPN Gateway system for communication with IBM QRadar

To collect all audit logs and system events from Avaya VPN Gateway, you must specify QRadar as the syslog server and configure the message format.

Procedure

  1. Log in to your Avaya VPN Gateway command-line interface (CLI).
  2. Type the following command:

    /cfg/sys/syslog/add

  3. At the prompt, type the IP address of your QRadar system.
  4. To apply the configuration, type the following command:

    apply

  5. To verify that the IP address of your QRadar system is listed, type the following command:

    /cfg/sys/syslog/list