Configuring SES Evolution
To connect SES to SLS, a public API key needs to be created. For more information, refer to the section Enabling and managing SES Evolution's public API in the SES Evolution administration guide.
Ensure that logs are sent to SLS:
-
With a Warning severity,
-
Over UDP port 514,
-
In raw JSON format.
For more information, refer to:
-
The section Creating groups of agent handlers in the SES Evolution administration guide,https://documentation.stormshield.eu/SES/v2/en/Content/Administration_Guide/create_server_groups.htm
-
The section Getting the logs from SES Evolution in the SLS deployment guide that corresponds to your hypervisor: