Log Forwarding - Datadog¶
Overview¶
Datadog is a very common and powerful SIEM that is used by many companies. Valtix supports Log Forwarding to Datadog to send Security Events and Traffic Log information for processing, storage, access and correlation. The information sent is in a semi-structured JSON format where the attribute-value pairs can be accessed and processed.
Requirements¶
In order to forward logs to Datadog, the following information is required:
- Datadog account
- Endpoint URL
- API Key
Tip
- To Sign up for a Datadog account, refer to Datadog Account
- To create a Datadog API Key, refer to Datadog API Key
Profile Parameters¶
Parameter | Deonticity | Default | Description |
---|---|---|---|
Profile Name | Required | A unique name to use to reference the Profile | |
Description | Optional | A description for the Profile | |
Destination | Required | Datadog | The SIEM used for the Profile |
Skip Verify Certificate | Optional | Unchecked | Whether to skip verifying the authenticity of the certificate |
API Key | Required | The Datadog API Key to authenticate the communication | |
Endpoint | Required | https://http-intake.logs.datadoghq.com/ | The URL endpoint used to receive the forwarded Events/Logs |