Configure ZPA for Arctic Wolf monitoring
You can configure Zscaler Private Access (ZPA)® to send the necessary logs to Arctic Wolf® for security monitoring.
These resources are required:
-
A ZPA admin account
-
An activated Arctic Wolf Sensor or Virtual Log Collector (vLC)
For more information, see Arctic Wolf Sensors or Install an Arctic Wolf vLC.
Configure log receivers
You must configure a log receiver for each log type that you want to receive logs from. Repeat this step to configure a log receiver for each of these log types: user activity, user status, audit, and browser access.