Configuring the ZPA log servers for activity insights
Recall that the log servers for ZPA are very similar to the Nanolog servers we saw for ZIA. However, there is no need for a Log Streaming Service (LSS) virtual machine (VM) such as a Nanolog Streaming Service (NSS) VM. After logging in to the ZPA Admin Portal, enterprise administrators need to navigate to Administration -> Log Streaming Service -> Log Receivers.
Under the Log Receivers tab, click on the blue + icon to add a new log receiver, and then fill in the following fields:
- Name—Provide a suitable name that can be used to quickly identify the purpose of this log receiver from the main Log Receivers page.
- Description—A free-flowing text field that can elaborate on what this log receiver does.
- Domain or IP Address—Enter a fully qualified domain name (FQDN) or an IP address of the receiver.
- TCP Port—The port number for the receiver.
- Connector Groups—Select one...