Imperva Incapsula (Cloud WAF)
This pack includes Cortex XSIAM content.
Configuration on Server Side
To setup a real-time SIEM log integration via AWS S3 push, follow the Set up log integration process.
Collection via AWS S3
To create or configure Incapsula log collection via S3, use the information described here.
You can configure the AWS S3 collector:
- Navigate to Settings > Data Sources > Add Data Source (Optional) > Amazon S3.
- Make sure to add the following values to the configuration:
- Log Type - Generic
- Log Format - CEF
- Vendor - incapsula
- Product - siemintegration