[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-04-02。"],[[["This document details how to collect FireEye Network Security and Forensics (NX) logs using a Google Security Operations forwarder, which is a feature supported in Google SecOps SIEM."],["FireEye NX logs are parsed and normalized to the UDM format using the `FIREEYE_NX` ingestion label."],["Configuration of FireEye NX involves enabling rsyslog notifications and setting up a connection to the Google SecOps forwarder, sending data on a specific UDP or TCP port (11583)."],["The Google SecOps forwarder must be configured to ingest FireEye NX logs by specifying `FireEye NX` as the log type, selecting Syslog as the collector type, and setting up the protocol, address, and port."],["This feature, covered under Pre-GA Offerings Terms, may have limited support and changes made to it may not be compatible with other pre-GA versions, therefore the user is prompted to see the Google Security Operations Technical Support Service guidelines."]]],[]]