Centos Integration process ( 1.1.1.1 is IP add of centos syslog server & centossyslog is hostname)
The CENTOS server needs to be configured to forward the logs from syslog daemon to the Collector PC on which SSIM Agent and Unix syslog collector is running.
In order to receive logs the below mentioned changes needs to be carried out at CENTOS server.
1.1.1.1 Centossyslog
Note :- IF server has firewall in between then need to open UDP-514 Port. Unidirectional
1 Source CENTOS server -> destination SSIM Collection Server (1.1.1.1) with unidirection port UDP-514.
Configure the collector machine to receive remote syslog events.
To configure the collector machine to receive remote syslog events
1 On the Linux machine on which the collector will be installed, use an editor such as vi to open the /etc/sysconfig/syslog file.
2 Change the line
SYSLOGD_OPTIONS="-m 0"
to the following:
SYSLOGD_OPTIONS="-m 0 -r -x"
3 Save and close the syslog file.
4 To enable receipt of remote syslog messages, type the following command:
service syslog restart
Good info
Nice article,
Make it more details and step by step since contains difficult to read,.
Regards
Kishorilal
Thanks for sharing.
This really helped, thanks!