IBM Community Hub

IBM Community Hub

The central place for general IBM discussions, knowledge sharing, and community updates. Explore our Topic Group List to find groups dedicated to individual IBM products and services.


#Other

 View Only
  • 1.  Configuring Log Source

    Posted 3 hours ago

    Hi,

    I'm working on onboarding a Lantronix device that is sending syslog events (UDP 514) to QRadar, and I wanted to check how others have handled log source identification for similar setups. I still see events under "Unknown Generic Event".  Any suggestions? 
    <84>Oct  9 18:48:18 dropbear[24890]: Bad password attempt for 'root' from <IP>:53516


    ------------------------------
    Langston Menezes
    ------------------------------