StewartT_232774
Nov 05, 2015Nimbostratus
ASM Automation (API / MySQL)
I'm running ASM 11.6 with EM 3.1.1. (Mainly used for config backup/pushing signatures)
My syslog feed for security events goes to another group for SIEM processing.
I'm looking to automate some things such as searching for Support ID's for blocked events.
Currently we have to log into multiple devices and search manually because 11.6 no longer writes to /var/log/asm.
Is there a way to automate this search via API/SQL access? Some other way I'm not thinking of?
I've looked through the API docs and it does not appear that this is available via API. And I've seen references to accessing the DB directly, but little documentation.