---
title: "Google SecOps SIEM Configuration"
canonical: "https://docs.infoblox.com/space/DeploymentGuideLogtoGoogleSecOps/1678213193/Google%20SecOps%20SIEM%20Configuration"
format: markdown
---
Before configuring Infoblox, ensure that you have configured Chronicle Forwarder on a host where we will be sending syslog data to. While you can set up the Infoblox integration first, it's recommended to complete the Google SecOps configuration setup beforehand to ensure a smooth log ingestion process.

The Following Steps are required to be done on SecOps.

1. [https://cloud.google.com/chronicle/docs/install/install-forwarder#installforwarder](https://cloud.google.com/chronicle/docs/install/install-forwarder#installforwarder)
2. [https://cloud.google.com/chronicle/docs/install/forwarder-management-configurations](https://cloud.google.com/chronicle/docs/install/forwarder-management-configurations)

For this integration to work, you would need to import a Custom Parser in Google SecOps SIEM that will parse all the Infoblox Logs. Custom parser can be created by following this guide: [https://cloud.google.com/chronicle/docs/event-processing/manage-parser-updates#create_custom_parser](https://cloud.google.com/chronicle/docs/event-processing/manage-parser-updates#create_custom_parser) 


> 📝 You may need to create a forwarding rule in your syslog configuration file to send data to Chronicle forwarder.