Syslog server supports TCP or UDP or TLS Modes to push data to remote syslog server

Description

How to configure SMA1000 to support a remote syslog server.  Which supports protocols like TCP, UDP, or TLS.   The default port if left blank, would communicate over port 514.

 

Resolution

End users need to configure external Syslog servers to push data from Appliance to remote Syslog servers.   Remote syslog servers need to have specific ports open and allow to receive syslog data for specific Port and Protocol chosen. 

Image

 

Note:   Enabling accounting Records under Communities would push Session Information:

 

Image

 

TLS Needs additional configuration:  Enable TLS on syslog-ng on remote Syslog server, generate or obtain a certificate and private key on the remote Syslog server and have the Cert Imported under the appliance SSL Settings-CA Certificate to support syslog data push.

 

Related Articles

  • SMA100 End of Support No-Charge Replacement FAQ
    Read More
  • SMA1000: Post upgrade to 12.5.0 on AWS and Azure, we show the error Could not retrieve the DNS settings once we log in to AMC/CMS console
    Read More
  • Firmware version required to upgrade to version 12.5.0.
    Read More
not finding your answers?