--- slug: /cse/ingestion/ingestion-sources-for-cloud-siem title: Example Ingestion Sources for Cloud SIEM description: Learn the sources available for ingesting data to Cloud SIEM. canonical: https://www.sumologic.com/help/docs/cse/ingestion/ingestion-sources-for-cloud-siem/ --- import useBaseUrl from '@docusaurus/useBaseUrl'; This section shows examples of sources you can use to ingest data into Cloud SIEM. There are many sources you can use to ingest data into Cloud SIEM. The sources described in this section are just a few. :::tip The most common method to ingest data into Cloud SIEM is to install a Cloud-to-Cloud Integration Framework source and select the **Forward to SIEM** option in the configuration UI, or to click the **+Add Field** link and add a field whose name is `_siemForward` and value is *true*. Once you do that, add another field named `_parser` with value that points to the parser associated with that source type, for example, */Parsers/System/Cisco/Cisco ASA*. This ensures that the logs from that type of source are properly parsed and normalized into structured records in Cloud SIEM. For all available methods to ingest data into Cloud SIEM, see [Recommended methods to ingest data into Cloud SIEM](/docs/cse/ingestion/cse-ingestion-best-practices/#recommended-methods-to-ingest-data-into-cloud-siem). :::
})
Configure an HTTP source to ingest Auth0 log messages and send them to Cloud SIEM’s Auth0 system parser.
})
Configure collection and ingestion of AWS ALB log messages from an S3 bucket to be parsed by Cloud SIEM.
})
Configure a CloudTrail source on a hosted collector to ingest CloudTrail log messages to be parsed by Cloud SIEM.
})
Configure an HTTP source to ingest AWS GuardDuty log messages and send them to Cloud SIEM's system parser.
Configure collection and ingestion of AWS Network Firewall log messages from an S3 bucket to be parsed by Cloud SIEM.
Configure collection and ingestion of VPC Flow logs from an S3 bucket to be parsed by Cloud SIEM.
Configure collection of Carbon Black Cloud logs messages from an S3 bucket to be parsed by Cloud SIEM.
Configure a syslog source to ingest Check Point Firewall log messages to be parsed by Cloud SIEM.
})
Configure a syslog source to ingest Cisco ASA log messages to be parsed by Cloud SIEM.
Configure a syslog source to ingest Cisco Meraki log messages to be parsed by Cloud SIEM Cisco.
Configure a syslog source to ingest Corelight Zeek log messages and send them to Cloud SIEM's log mapper.
Configure a syslog source to ingest Fortigate Firewall log messages to be parsed by Cloud SIEM.
Collect Google Workspace log messages to be parsed by Cloud SIEM's system parser.
Collect log messages from G Suite Alert Center to be parsed by Cloud SIEM.
})
Configure a syslog source to ingest Kemp LoadMaster messages to be parsed by Cloud SIEM.
Configure a syslog source to ingest Linux OS log messages to be parsed by Cloud SIEM.
})
Configure collection of Microsoft 365 log messages to be parsed by Cloud SIEM.
Configure an HTTP Source to ingest Microsoft Azure Activity Log messages and to be parsed by Cloud SIEM.
Configure collection of Windows Event Log messages and send them to the Cloud SIEM mapper.
})
Configure a syslog source to ingest Nginx Access log messages to be parsed by Cloud SIEM.
})
Configure an Okta source to ingest Okta log messages and send them to Cloud SIEM’s system parser.
Learn how to collect OneLogin log messages and send them to Sumo Logic to be ingested by Cloud SIEM.
Configure an HTTP source to ingest osquery log messages and send them to the Cloud SIEM system parser.
Configure collection of Palo Alto Firewall log messages to be parsed by Cloud SIEM's system parser.
Learn how to collect SentinelOne log messages and send them to be ingested by Cloud SIEM.
Lean how to collect Signal Sciences WAF log messages and sending them to Sumo Logic to be ingested by Cloud SIEM.
Configure a Syslog source to collect and send Symantec Proxy Secure Gateway (ProxySG) log messages to Cloud SIEM.
})
Configure collection of ZScaler NSS log messages to be parsed by Cloud SIEM's system parser for ZScaler NSS.
})
Configure an HTTP source to ingest Zscaler Private Access log messages and send them to Cloud SIEM's system parser.