About the Device
Cisco® Email Security enables users to communicate securely and helps organizations combat Business Email Compromise (BEC), ransomware, advanced malware, phishing, spam, and data loss with a multi-layered approach to security.
Device Information
Entity | Particulars |
---|---|
Vendor Name | Cisco |
Product Name | Secure Email Gateway |
Type of Device | Hosted |
Collection Method
Log Type | Ingestion label | Preferred Logging Protocol | Log collection method |
---|---|---|---|
Cisco Email Security | CISCO_EMAIL_SECURITY | Syslog | CyberHub |
Port Requirements
Source | Destination | Port |
---|---|---|
Cisco Email Security | CyberHub | 601 (TCP) |
Device Configuration
Navigate to System Administration > Log Subscriptions
Add Log Subscription
Select the log type as Consolidated Event Logs
Select and Add all the fields available in Available Log Fields.
Select a log Retrieval Method for the log subscription, select Syslog Push
a. Hostname: Provide CyberHub IP Address
b. Protocol: Select TCP
c. Facility: default
Submit and Commit your configuration changes.
Integration Parameters
Parameters required from customer for Integration.
Property | Default Value | Description |
---|---|---|
IP Address | Cisco Email Security interface IP address | Hostname or IP address of the device which forwards logs to the CyberHub |