# Elastic siem receive another Security Device log

**URL:** https://discuss.elastic.co/t/elastic-siem-receive-another-security-device-log/249318
**Category:** SIEM
**Created:** [September 21, 2020, 8:07am UTC](https://discuss.elastic.co/t/elastic-siem-receive-another-security-device-log/249318 "2020-09-21T08:07:51Z")
**Posts on this page:** 3
**Page:** 1

<div class="post-metadata">

### Author: ![111387](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/111387/32/75408_2.png) [@111387](https://discuss.elastic.co/u/111387)
#### Post date: [September 21, 2020, 8:07am UTC](https://discuss.elastic.co/t/elastic-siem-receive-another-security-device-log/249318/1 "2020-09-21T08:07:51Z")

</div>

I Want to Using IPS, Anti Virus etc.. log in Elastic Siem

is it possible using this log???

i want security log to logstash -\> ElasticSiem and make Correlation rules

---

<div class="post-metadata">

### Author: ![Devin\_Hurley](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/devin_hurley/32/62660_2.png) [@Devin\_Hurley](https://discuss.elastic.co/u/Devin_Hurley)
#### Post date: [September 21, 2020, 3:24pm UTC](https://discuss.elastic.co/t/elastic-siem-receive-another-security-device-log/249318/2 "2020-09-21T15:24:28Z")

</div>

Hi 남진 김 ,

If you are sending in the logs via Logstash, you can set your Logstash index pattern to be available in the SIEM by going to the "Stack Management" section of Kibana, and then scrolling down to the "Security Solution" or "SIEM" section (depending on what version of Kibana you are on) and modify the "Elasticsearch Indices" section to include the indexes you are sending the IPS and Anti Virus logs that you mention.

If the data is being sent in via Logstash then just make sure that the setting above has `logstash*` listed in the available index patterns for the setting.

Let me know if that works for you or if you have further questions!

---

<div class="post-metadata">

### Author: ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)
#### Post date: [October 19, 2020, 3:24pm UTC](https://discuss.elastic.co/t/elastic-siem-receive-another-security-device-log/249318/3 "2020-10-19T15:24:32Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
