Endpoint Protection

 View Only
  • 1.  External logging to syslog server

    Posted Jun 08, 2012 03:23 PM

    I need more documentation on the parameters for configuring SEPM for external logging to a syslog server.  Also, I assume this does not replace or impact any local logging?  What do the log facility numbers represent?  Very poorly documented.



  • 2.  RE: External logging to syslog server

    Posted Jun 08, 2012 04:02 PM

    I had to google syslog to figure out how to set it up.



  • 3.  RE: External logging to syslog server

    Posted Jun 09, 2012 06:24 AM

    Here is the steps for external logging:

    To export log data to a Syslog server

    1. In the console, click Admin.

    2. Click Servers.

    3. Click the local site or remote site that you want to export log data from.

    4. Click Configure External Logging.

    5. On the General tab, in the Update Frequency list box, select how often to send the log data to the file.

    6. In the Master Logging Server list box, select the management server to send the logs to.

      If you use SQL Server and connect multiple management servers to the database, specify only one server as the Master Logging Server.

    7. Check Enable Transmission of Logs to a Syslog Server.

    8. Provide the following information:

      • Syslog Server

        Type the IP address or domain name of the Syslog server that you want to receive the log data.

      • Destination Port

        Select the protocol to use, and type the destination port that the Syslog server uses to listen for Syslog messages.

      • Log Facility

        Type the number of the log facility that you want to the Syslog configuration file to use, or use the default. Valid values range from 0 to 23.

    9. On the Log Filter tab, check which logs to export.

    10. Click OK.

     



  • 4.  RE: External logging to syslog server



  • 5.  RE: External logging to syslog server

    Posted Sep 03, 2012 09:57 PM

    Many thanks for this guide, this is such a time saver :-)



  • 6.  RE: External logging to syslog server

    Posted Sep 04, 2012 05:40 AM

    Thumbs up to the above suggestion.