[AuditLog] Set Up Syslog Serv

Audit Log User Guide for VSP E Series

Version
93-07-0x
Audience
anonymous
Part Number
MK-97HM85024-18

Detailed Information

Item

Description

Syslog Transfer Protocol

The protocol to transfer audit log information to syslog servers (TLS/RFC5424 or UDP/RFC3164).

Syslog Server

The server used to transfer audit log information to syslog servers.

Primary: Primary server, Secondary: Secondary server

Server Enable

Indicates whether the syslog server setting is enabled or disabled.

Enable: The setting is enabled.

Disable: The setting is disabled.

Type

The type of the IP address of the syslog server (Identifier(Domain), IPv4, or IPv6).

A hyphen (-) is displayed if the setting of transferring audit logs to syslog servers is disabled.

Name

The host name or IP address of the syslog server.

A hyphen (-) is displayed if the setting of transferring audit logs to syslog servers is disabled.

Port Number

The port number to transfer audit logs to syslog servers.

A hyphen (-) is displayed if the setting of transferring audit logs to syslog servers is disabled.

Client Certificate File Name

The name of the client certificate file used to transfer audit logs to syslog servers.

A hyphen (-) is displayed, if the setting of transferring audit logs to syslog servers is disabled, or if UDP/RFC3164 is used as a transfer protocol.

Root Certificate File Name

The name of the root certificate file used to transfer audit logs to syslog servers.

A hyphen (-) is displayed, if the setting of transferring audit logs to syslog servers is disabled, or if UDP/RFC3164 is used as a transfer protocol.

Location Identification Name

The name to identify a storage system when transferring audit logs to syslog servers.

Retry

Indicates whether to retry transferring if communication with syslog servers failed.

Enable: Transfer is retried.

Disable: Transfer is not retried.

A hyphen (-) is displayed if UDP/RFC3164 is used as a transfer protocol.

Retry Interval

The interval of the retries of transferring.

A hyphen (-) is displayed, if the setting of the retry is disabled or if UDP/RFC3164 is used as a transfer protocol.

Detail

Indicates whether the detailed information of audit logs is transferred to syslog servers.

Enable: The information is transferred.

Disable: The information is not transferred.

Example

GUM,,[AuditLog],Set Up Syslog Serv,,Normal end,Seq.=xxxxxxxxxx
+Syslog Transfer Protocol=xxxxxxx,
{Syslog Server,Server Enable,Type,Name,Port Number,
Client Certificate File Name,Root Certificate File Name,
Location Identification Name,Retry,Retry Interval}
=[{Primary,Enable,IPv4,xxxxx,65535,xxxx,xxxxx,xxxxx,Disable,xxx},
{Secondary,Enable,IPv4,xxxxx,65535,xxxx,xxxx,xxxx,Disable,xxx}],
Detail=Enable