[syslog-ng] Packet fragmentation issue

José Moreno jmorenoa at gmail.com
Fri Mar 2 14:48:07 CET 2012


Sorry, my previous message went out unfinished and I see I've placed it as an answer to someone else's question.

I just wanted to add that I was posting because I had not seen this issue in the list; Sorry if I'm wrong.

Thanks very much in advance.
Kind regards.

Enviado desde mi iPhone

El 02/03/2012, a las 14:40, José Moreno <jmorenoa at gmail.com> escribió:

> Hi all,
> 
> I'm running syslog-ng 2.4.1, log sources send to a log server which beside keeping the original data as is in files, forwards them in real time to a SIEM, spoofing source IP.
> 
> My problem comes after some logs are too long to fit in a single frame, log server fragments those packets when sending them to SIEM and spoofing is not performed for them.
> 
> Enviado desde mi iPhone


More information about the syslog-ng mailing list