•  
  • Add Log Sources
  • Configuring Syslog Service
  • On Scaler NSS devices
lhs-panel Click here to expand

Configuring Zscaler NSS

Navigate to Edit NSS Feed in the console and specify the following details:

  1. Enter the EventLog Analyzer server IP address in the field SIEM IP address.
  2. Enter 514 as the SIEM TCP Port. If you have changed the default TCP port, then specify the changed port number here.
  3. Select the Field Output Type as Tab-separated.
  4. Append <96> at the start of the Feed Output Format before "%s... which specifies to EventLog Analyzer that the log messages must be processed.

Don't see what you're looking for?

  •  

    Visit our community

    Post your questions in the forum.

     
  •  

    Request additional resources

    Send us your requirements.

     
  •  

    Need implementation assistance?

    Try OnboardPro

     

Copyright © 2025, ZOHO Corp. All Rights Reserved.

Get download link