Skip to main content

Check out Interactive Visual Stories to gain hands-on experience with the SSE product features. Click here.

Skyhigh Security

Learn How Cloud Connector Communicates with Log Collector

The Skyhigh CASB Log Collector, a component of the Analytics Engine, runs in the cloud.
CC communicates securely with the Log Collector at pstat.myshn.net for the following operations:

  • Uploads tokenized and aggregated unmatched events from firewall and proxy logs to the log collector.
  • Uploads Active Directory data for sanctioned user groups or shadow AD custom attributes when AD integration is enabled.

Communication between CC and Log Collector is established over Transport Layer Security (TLS). Cloud Connector supports both TLSv1.2 and  TLSv1.3 protocols.

NOTE: TLSv1.2 protocol is the default protocol in Cloud Connector. However, you can enable both protocols.

TLS configuration details:

  • Cipher suite: TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384
  • Certificate signature: SHA256withRSA
  • Server public key: RSA 2048-bit
  • Issuer: GlobalSign Organization Validation CA – SHA256 – G2
  • Revocation information: CRL and OCSP

IMPORTANT: The handshake protocol version for communication between Cloud Connector and Log Collector cannot be modified.

  • Was this article helpful?