Forward pfSense logs¶
Configure pfSense to send syslog to LogSentinel SIEM by following the pfSense documentation.
Specify a remote log server using the ip address of the collector and port 2516 (UDP).
Note
Make sure that all firewalls (including the firewall on the collector machine) allow connections to the collector port