Video Screencast Help
Symantec to Separate Into Two Focused, Industry-Leading Technology Companies. Learn more.

How to configure syslog event logging in Symantec AntiVirus for Linux 1.0.13 ?

Created: 09 Sep 2012 • Updated: 12 Sep 2012 | 4 comments
This issue has been solved. See solution.

Hi,

with the latest version Symantec AntiVirus for Linux 1.0.13, how do I configure the syslog server to point to my Tripwire server ?

WHat file to edit and what port to open in the firewall ?

Thanks.

Comments 4 CommentsJump to latest comment

Mithun Sanghavi's picture

Hello,

You can configure Centralized Logging and Reporting for Symantec Antivirus for Linux using Symantec Endpoint Protection Manager or to a Specific SYSLOG server.

All events that are generated are logged to the standard system log via syslog.

You may have to make the necessary enteries in /etc/syslog.conf configuration file.

I would request you to check the SAV for Linux Implementation Guide (SAV_Linux_Impl.pdf) for more information on the same.

Also, check this Article: https://www-secure.symantec.com/connect/articles/use-configedexe-config-sav-linux

Hope that helps!!

Mithun Sanghavi
Senior Consultant
MIM | MCSA | MCTS | STS | SSE | SSE+ | ITIL v3

Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.

SOLUTION
John Santana's picture

many thanks Mithun, so I have to create the proper config file first before installing it into the Linux host ?

Kind regards,

John Santana
IT Professional

--------------------------------------------------

Please be nice to me as I'm newbie in this forum.

Mithun Sanghavi's picture

Hello,

That is correct. 

Hope that helps!!

Mithun Sanghavi
Senior Consultant
MIM | MCSA | MCTS | STS | SSE | SSE+ | ITIL v3

Don't forget to mark your thread as 'SOLVED' with the answer that best helped you.

John Santana's picture

many thanks for the information Mithun !

Kind regards,

John Santana
IT Professional

--------------------------------------------------

Please be nice to me as I'm newbie in this forum.