[syslog-ng] How to add a keyword into syslog

Lin, Victor victor.lin at rbc.com
Sat Mar 2 23:15:38 UTC 2019

Dear All,

  I would like to add the sources of syslog (for example CiscoIOS, CiscoNXOS, Arista)  when I forward the received syslog to remote server,

Could you please let me know how to do it?

Below is from my current syslog-ng.conf

destination d_Arista_logs {
        network("" port(514) transport(udp) spoof_source(yes));


If you received this email in error, please advise the sender (by return email or otherwise) immediately. You have consented to receive the attached electronically at the above-noted email address; please retain a copy of this confirmation for future reference.  

Si vous recevez ce courriel par erreur, veuillez en aviser l'expéditeur immédiatement, par retour de courriel ou par un autre moyen. Vous avez accepté de recevoir le(s) document(s) ci-joint(s) par voie électronique à l'adresse courriel indiquée ci-dessus; veuillez conserver une copie de cette confirmation pour les fins de reference future.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.balabit.hu/pipermail/syslog-ng/attachments/20190302/f8967c1c/attachment.html>

More information about the syslog-ng mailing list