© Copyright Netsurion. All Rights Reserved. 6
The account used to run this script is the one created in “Create a new administrator contact for
Forcepoint storage”.
In the Help tab, view Running the SIEM log file download script for Forcepoint Storage for details on
formatting the data and downloading and using the script.
3.1.3 Scheduling log file download for Forcepoint storage
Once you have run an initial download and determined the parameters you want to use in your script, set up
a scheduled service to run automatic downloads.
We recommend that you download the log files at least once a day. To avoid periods of high network traffic,
select a random time for the download (for example, somewhere between 10 and 50 minutes past the
hour).
Scheduling on Windows
Before scheduling downloads from the cloud service, make sure that the Windows Task Scheduler service is
started. To check this:
1. Open the Windows Services tool.
2. Scroll down to Task Scheduler.
• If the status is started, leave it the way it is.
• Otherwise, click Start or Resume to start the service.
To schedule the log file download:
1. Open the Windows Scheduled Tasks tool.
2. Select Add/Create Scheduled Task.
3. Work through the Scheduled Task Wizard. Note that the steps involved may differ for each
Windows version.
• The network username and password you provide is not the username and password you set up
in the cloud portal.
• The following settings are required as part of actions to successfully run the download script:
o Program: <full path>\perl.exe.
o Additional Arguments: <full path>\log_export_siem_v2_0.pl -- cfgfile
<full path>\log_export_siem.cfg
o Start in: enter the full path to the script.
• Mark the Open the properties.... checkbox, then click Finish.
4. Define the task:
• To run as the user defined in “Create a new administrator contact for Forcepoint storage”,
using the password defined for that user.
• To download the file to a designated local destination.
5. Click OK.
Note: Click here to check the passing parameters on how to provide destination path for downloading log
files in logfile download script. Capture log files downloading location for future purpose.
Send downloaded log files to EventTracker by using Integrator.