[syslog-ng] Packet fragmentation issue

José Moreno jmorenoa at gmail.com
Fri Mar 2 14:40:12 CET 2012


Hi all,

I'm running syslog-ng 2.4.1, log sources send to a log server which beside keeping the original data as is in files, forwards them in real time to a SIEM, spoofing source IP.

My problem comes after some logs are too long to fit in a single frame, log server fragments those packets when sending them to SIEM and spoofing is not performed for them.

Enviado desde mi iPhone


More information about the syslog-ng mailing list