Ready to help

Ingesting events using Panther

Configure Panther to allow for ingesting Push webhook logs.

Configure the log source in Panther

In the Panther console, select Push Security from the available log sources.

Panther SIEM setup - step 1 - docs

Then select Start Setup.

Panther SIEM setup - step 2 - docs

Configure the Push Security log source with the following specifications:

  • Source name (e.g. PushSecurity)

  • Auth method: HMAC

  • Header name: x-signature

  • Secret key value: Use the generate button or provide your own secret. Note: This will be shared with Push Security.

  • Hashing algorithm: SHA256

Panther SIEM setup - step 3 - docs

Capture the HTTP Ingest URL, which will be shared with Push in the next step when you create the integration.

Wait while Panther sets up your log source.

Panther SIEM setup - step 4 - docs

Configure the integration in Push

Next you'll set up the Panther integration in the Push admin console. Go to Settings > Integrations and select Panther.

Input the HTTP Ingest URL and the secret key value from Panther and click Connect.

Panther SIEM setup - step 5 - docs