[Oisf-users] Syslog - fast.log - rsyslog

Tiago Faria tiago.faria.backups at gmail.com
Tue Apr 10 23:29:53 UTC 2018


Hi list,

In a environment where my syslog data is being forwarded to a collector
(SIEM, for example), previously, I was able to get the output that can be
found in fast.log from syslog itself (and those messages would end up in
the SIEM).

On my latest test, though, I can’t.

Other than specifying the syslog output, is there anything that needs to be
done so that Suricata also writes to syslog (in this particular case,
rsyslog)?

Thank you.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openinfosecfoundation.org/pipermail/oisf-users/attachments/20180410/48bb0f52/attachment.html>


More information about the Oisf-users mailing list