Vectra Networks
You can forward logs from Vectra Networks X-Series to InsightIDR to capture events as Third Party Alerts.
To send Vectra Networks logs to InsightIDR:
Configure Vectra
You must configure Vectra Networks to send CEF logs to InsightIDR.
To do this:
- Sign in to your Vectra Networks account.
- From the top right corner, select the Cogwheel and select the Settings page.
- Select the Notifications tab.

- At the bottom of the page, find the “Syslog” section and click the Edit button.
- In the “Destination” field, provide the IP address of your InsightIDR Collector.
- In the “Port” field, enter the port on your Collector that will receive the Vectra logs.

- In the “Protocol” field, select a protocol from the dropdown.
- In the “Format” field, select CEF as your log format.
- Click the Save button.
Configure Vectra in InsightIDR
Now you must configure a third party event source in InsightIDR.
To do so:
- From your dashboard, select Data Collection on the left hand menu.
- When the Data Collection page appears, click the Setup Event Source dropdown and choose Add Event Source.
- From the “Third Party Alerts” section, click the Vectra Networks icon. The “Add Event Source” panel appears.
- Choose your collector and name your event source if you want.
- Optionally choose to send unparsed logs.
- Specify the port and protocol you used during Vectra configuration.
- Click the Save button.

Did this page help you?