cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
317
Views
0
Helpful
2
Replies

VPN 3k to Syslog

Eric Hansen
Level 1
Level 1

Hello

I have a 3060 Concentrator that I am trying to point events to a syslog. I have the syslog defined by IP in the Config>System>Events>Syslog setting with udp514 and local7. I also have Events to Syslog set to Use Event List, and the event list is set to ALL/SEV(1-13).

The target machine is a XP box with Kiwi running on it. just before my Syslog i have a Cat2960G and I setup a SPAN to a Network General Portable Sniffer and I am not seeing any packets come from the Concentrator destined for my Syslog.

any help is greatly appreciated.

Thanks

e-

2 Replies 2

srue
Level 7
Level 7

you may need to define a filter rule (both inbound and outbound) and apply it to which ever interface the XP machine is on.

Our filters were currently set to none, I tried seting a filter on the interface that is in the direction of the syslog but that didnt seem to do anything. I still dont see any syslog packets hitting the wire.

e-