ASA sends events (syslog and NSEL events) to the SEC component of the SDC VM that is configured in CDO.
The SEC accepts both TCP and UDP syslogs from ASA and compresses the events. From here on, the events are securely transferred to the Cisco cloud. The SEC sends the compressed events to the cloud-based Eventing Service
https://www.cisco.com/c/en/us/td/docs/security/asa/special/sal-saas/cisco-asa-and-cisco-security-analytics-and-logging-asdm-integration-guide.html
Refer to the chapter: ASA Event Flow in SAL
upvoted 3 times
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
aa4a63c
4 days, 11 hours agodorf05
3 months agoSurfside92
5 months agodfb0b7d
5 months, 1 week agoklu16
7 months, 1 week ago