Integrating Broadcom Endpoint Security

Integrating Broadcom Endpoint Security

To set up the Broadcom Endpoint Security, do the following steps, below:

  • Enable Broadcom Endpoint Security

  • Install the XDR Collector

  • Configure the Firewall

  • Open the port on the XDR Collector Host

Enable Broadcom Endpoint Security

  1. In Barracuda XDR Dashboard, navigate to Integrations Integrations.png.

  2. On the Broadcom Endpoint Security card, click Setup.

    Broadcom Endpoint Security integration card
  3. Select the Enable check box.

    Check box enabled
  4. If the default UDP port can't be forwarded because it is already in use, type a different UDP port number.

  5. Click Save.

Install the XDR Collector

When collecting logs from one or more integrated data sources, always set up the XDR Collector on a dedicated host server. Don't use an existing server because the amount of data produced by logs can impact critical infrastructure.

Configure the Firewall

  • To add a syslog server to the Broadcom Endpoint Security Firewall follow the steps that can be found in Broadcom Endpoint Security Firewall Documentation

  • When entering the necessary information for each syslog server that is added, make sure that the port is pointing to 9231, not to the default port that is mentioned in the documentation.

Open the port on the XDR Collector Host

Ensure incoming traffic is allowed on UDP port 9231.

Linux

sudo ufw allow 9231/udp

Windows

netsh advfirewall firewall add rule name="Broadcom Endpoint Security Events" dir=in action=allow protocol=UDP localport=9231


We value your feedback.
If you have questions, suggestions, or feedback on our documentation, contact the Campus Product Documentation team.
For general product inquiries or technical support, please contact the global Barracuda Support team.