Skip to main content

5.7 How to forward Windows logs to Syslog Server

Configure SyskeyOT Windows Agent to forward system Windows logs to a syslog server over Syslog protocol in RFC5424 format.

Procedure

  1. In the top navigation pane, Click on Syslog Config Tab

    Syslog Config Tab

  2. Switch the Toggle switch to Enable Log Forwarding option

  3. Specify the IP address, network protocol and port number of the Syslog Server.

  4. Select the method for TCP framing. The available options are Octet Counting and Non-Transparent Framing.

  5. Switch the Toggle switch to Enable/Disable local recording of logs in a specified folder.

  6. Host – Provide the host name or IP address to be used in the syslog header of the forwarded messages. Leave blank to use the current machine name.

  7. Click Test message option to test the sample message from Windows Agent to the syslog Server.

  8. Click on Show Live Logs to see the real time logs flowing towards the Syslog Server.

  9. Click Image Description.