[syslog-ng] (U) Find the source systems that write to specific Syslog Server

Amin, Jitesh CTR DISA JSP (US) jitesh.amin.ctr at mail.mil
Tue Jul 3 12:38:10 UTC 2018


CLASSIFICATION: UNCLASSIFIED

Hello,

We have multiple servers running syslog. By looking at the syslong.conf file we can identify where the syslog servers are forwarding the data to.

 

But what we really want to know is what all sources are writing their logs to our syslog servers. Is there a way for us to look somewhere within syslog configuration and find out which all systems are forwarding/writing logs to a specific syslog server?

 

Thanks

Jitesh AminCLASSIFICATION: UNCLASSIFIED

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.balabit.hu/pipermail/syslog-ng/attachments/20180703/4e36cd04/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6560 bytes
Desc: not available
URL: <http://lists.balabit.hu/pipermail/syslog-ng/attachments/20180703/4e36cd04/attachment.bin>


More information about the syslog-ng mailing list