SYSLOG Over TCP
How Syslog over TCP works
SNIP support for Syslog
Fully qualified domain name Support for audit Log
Configuring Syslog over TCP by using the Command Line Interface
add audit syslogAction <name> (<serverIP> | ((<serverDomainName>[-domainResolveRetry <integer>]) | -lbVserverName<string>))[-serverPort <port>] -logLevel <logLevel>[-dateFormat <dateFormat>] [-logFacility <logFacility>] [-tcp ( NONE | ALL )] [-acl ( ENABLED | DISABLED )][-timeZone ( GMT_TIME | LOCAL_TIME )][-userDefinedAuditlog ( YES | NO )][-appflowExport ( ENABLED | DISABLED )] [-lsn ( ENABLED | DISABLED )][-alg ( ENABLED | DISABLED )] [-subscriberLog ( ENABLED | DISABLED )][-transport ( TCP | UDP )] [-tcpProfileName <string>][-maxLogDataSizeToHold <positive_integer>][-dns ( ENABLED | DISABLED )] [-netProfile <string>]
add audit syslogaction audit-action1 10.102.1.1 -loglevel INFORMATIONAL -dateformat MMDDYYYY -transport TCP
Adding SNIP IP address to net profile option by using the command line interface
add netProfile <name> [-td <positive_integer>] [-srcIP <string>][-srcippersistency ( ENABLED | DISABLED )][-overrideLsn ( ENABLED | DISABLED )]add syslogaction <name> <serverIP> –loglevel all –netprofile net1add netprofile net1 –srcip 10.102.147.204`
Adding net profile in a syslog action by using the command line interface
add audit syslogaction <name> (<serverIP> | -lbVserverName <string>) -logLevel <logLevel>
-netProfile <string> …
add syslogaction sys_act1 10.102.147.36 –loglevel all –netprofile net1
Configuring FQDN support by using the command line interface
add audit syslogAction <name> (<serverIP> | ((<serverDomainName>[-domainResolveRetry <integer>]) | -lbVserverName <string>)) -logLevel <logLevel> ...
set audit syslogAction <name> [-serverIP <ip_addr|ipv6_addr|*>]-serverDomainName <string>] [-lbVserverName <string>]-domainResolveRetry <integer>] [-domainResolveNow]
add audit nslogAction <name> (<serverIP> | (<serverDomainName>[-domainResolveRetry <integer>])) -logLevel <logLevel> ...
set audit nslogAction <name> [-serverIP <ip_addr|ipv6_addr|*>][-serverDomainName <string>] [-domainResolveRetry <integer>][-domainResolveNow]
Configuring Syslog over TCP by using the GUI
-
Navigate to System > Auditing > Syslog and select the Servers tab.
-
Click Add and select Transport Type as TCP.
Configuring a net profile for SNIP support by using the GUI
-
Navigate to System > Auditing > Syslog and select the Servers tab.
-
Click Add and select a net profile from the list.
Configuring FQDN by using the GUI
-
Navigate to System > Auditing > Syslog and select the Servers tab.
-
Click Add and select a Server Type and Server Domain Name from the list.