11-02-2001 03:31 PM - edited 02-21-2020 11:28 AM
How would you go about capturing syslog messages from a branch PIX (pix 506) which has a site-to-site VPN connection to our corporate office running a pix 515UR? I believe I can have the 506 send the syslog messages in the clear through the net, but my syslog server is on my inside network, and I don't want to create a static/conduit to expose it. Rather, I would like the 506 to send the syslog messages through the VPN tunnel to my protected server.
Is this possible? Anyone have any advice?
Thanks
11-03-2001 08:14 AM
It is possible. Take a look at using TCP Syslog on the PIX, rather than standard UDP.
11-03-2001 10:30 AM
The problem with TCP syslog, as I understand it, if it fails to successfully log messages to the syslog server, the firewall will quit passing traffic. Is that not the case?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide