> ## Documentation Index
> Fetch the complete documentation index at: https://docs.wirespeed.co/llms.txt
> Use this file to discover all available pages before exploring further.

# Zscaler ZPA (Syslog)

> Forward Zscaler ZPA logs to Wirespeed

1. Login to Wirespeed and navigate to Integrations > [**Add Integration**](https://app.wirespeed.co/settings/integrations?tab=browse)
2. Select **Zscaler ZPA (Syslog)** and click **Integrate**
3. After you have clicked Integrate, select **Chat** on the left-hand navigation and ask the support team to provide you with a `hostname:port` combination
4. Once the team has provided that to you, **login to the ZPA Admin Portal**
5. Navigate to **Configuration & Control** > **Private Infrastructure** > **Log Streaming Service** > **Log Receivers**
6. Click **Add Log Receiver** and configure the **Log Receiver** tab:
   1. **Name**: A descriptive name (e.g., "Wirespeed")
   2. **Domain or IP Address**: Wirespeed-provided hostname
   3. **TCP Port**: Wirespeed-provided port
   4. **App Connector Groups**: Select the groups whose logs you want to forward
7. Click **Next** and configure the **Log Stream** tab:
   1. **Log Type**: Select the desired log type (e.g., User Activity, Browser Access)
   2. **Log Template**: Select **JSON**
   3. **Log Stream Content**: Use the default template
8. Click **Save**

ZPA logs should reflect shortly underneath the Events page.

<Warning>Zscaler ZPA sends logs via App Connectors, not directly from the ZPA cloud. Ensure the selected App Connector Groups have network connectivity to the Wirespeed hostname and port.</Warning>
