[AuditLog] Set Syslog Server

Audit Log User Guide for VSP 5000 Series

Version
90-09-0x
Audience
anonymous
Part Number
MK-98RD9010-13

Example

09xx,YYYY/MM/DD,HH:MM:SS.xxx, 00:00,RMI AP,uid=user-name,Task Name,
[AuditLog],Set Syslog Server,,Normal end,
from=xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx:xxxx,,Seq.=xxxxxxxxxx 
+Transfer Protocol=TLS1.2 
+Location Identification Name=ABCDEFG 
+Output Detailed Information=Enable 
+Timeout=10 
+Retry Interval=1 
+Number of Retries=3 
+{Server Type,Output,IP Version,IP Address,Port Number,
Client Certificate File Name,Root Certificate File Name,Host Flg,Host Name}=
[{Primary,Enable,IPv4,xxx.xxx.xxx.xxx,yyy,FILE1,FILE2,,},
{Secondary,Disable,,,,,,,}],Num. of Servers=2

Detailed Information

No detailed information is output when no setting is changed.

Item

Description

Transfer Protocol

Indicates the syslog transfer protocol. It is not output if the setting is not changed.

TLS1.2: New Syslog Protocol (TLS1.2/RFC5424)

UDP: Old Syslog Protocol (UDP/RFC3164)

Location Identification Name

Indicates the location identification information of the storage system. It is not output if the setting is not changed.

Output Detailed Information

Indicates whether to output the detailed information of the audit log to the syslog server. It is not output if the setting is not changed.

Enable: Detailed information is output

Disable: Detailed information is not output

Timeout

Indicates the time to detect the timeout of communication with the syslog server. It is not output if the setting is not changed.

Retry Interval

Indicates the retry interval when the communication with the syslog server fails. It is not output if the setting is not changed.

Number of Retries

Indicates the number of retries when the communication with the syslog server fails. It is not output if the setting is not changed.

Server Type

Indicates the syslog server that transfers syslog information. It is not output if the setting is not changed.

Primary: Primary syslog server

Secondary: Secondary syslog server

Output

Indicates whether to transfer the syslog information to the syslog server. It is not output if the setting is not changed.

Enable: Syslog information is transferred

Disable: Syslog information is not transferred

IP Version

Indicates the internet protocol version. It is output only when the target syslog server is specified by the IP address. It is not output if the setting is not changed.

IPv6: Internet Protocol Version 6

IPv4: Internet Protocol Version 4

IP Address

Indicate the IP address of the syslog server. It is output only when the target syslog server is specified by the IP address. It is not output if the setting is not changed.

Port Number

Indicates the port number of the LAN while transferring syslog information. It is not output if the setting is not changed.

Client Certificate File Name

Indicates the client certificate file name. It is not output if the file is not uploaded.

Root Certificate File Name

Indicates the CA certificate file name. It is not output if the file is not uploaded.

Host Flg

Indicates whether the target syslog server is specified by the host name.

Enable: indicates that the syslog server is specified by the host name.

It is not output if the setting is not changed.

Host Name

Indicates the host name of the target syslog server. It is output only when the target syslog server is specified by the host name. It is not output if the setting is not changed.

Num. of Servers

Indicates the number of the servers that are set. It is not output if there are no servers that are set.