2 Mar
2012
2 Mar
'12
1:48 p.m.
Sorry, my previous message went out unfinished and I see I've placed it as an answer to someone else's question. I just wanted to add that I was posting because I had not seen this issue in the list; Sorry if I'm wrong. Thanks very much in advance. Kind regards. Enviado desde mi iPhone El 02/03/2012, a las 14:40, José Moreno <jmorenoa@gmail.com> escribió:
Hi all,
I'm running syslog-ng 2.4.1, log sources send to a log server which beside keeping the original data as is in files, forwards them in real time to a SIEM, spoofing source IP.
My problem comes after some logs are too long to fit in a single frame, log server fragments those packets when sending them to SIEM and spoofing is not performed for them.
Enviado desde mi iPhone