I have been unsuccessful in trying to figure out an easy way to accomplish the following:
I have an MS ISA FW / Proxy server and I want to be able to get the event logs and the firewall logs sent to a Unix syslog server.
Snare ISA can accomplish this really easily, but it causes an insane CPU load on the firewall that is not tolerable.
What are the steps involved to get this to work with your products?
Thanks!!!!!!!

