This section is applicable for both NSM SaaS and NSM On-Premises environments.
To transition a firewall from syslog
Acquire the firewall to the NSM. If you are transitioning to:
This step is only required if firewall is not already managed in NSM.
Modify syslog agent firewall settings:
Navigate to Firewall View | Device > Log > Syslog > Syslog Servers tab.
Delete the Syslog Server from the list.
Click Confirm in the Delete confirmation pop-up.
Commit and deploy the pending changes. For more information, refer to Committing and Deploying the Updates.
If you are transitioning to NSM On-Premises, enable flow reporting and analytics:
Navigate to the Manager View | Home > Firewalls > Inventory page.
Click the Ellipses icon of the firewall where you want to enable the syslogs under the Action column and select Edit Settings.
Under Reporting & Analytics group:
Click Save
Now the firewall is acquired by the NSM:
When you log in to the Firewall UI, a pop-up appears stating that the firewall is managed by NSM.