is it possible to exclude traffic and threat log from exporting to syslog server ?

Reply
Highlighted
L4 Transporter

is it possible to exclude traffic and threat log from exporting to syslog server ?

Hi All,

is it possible to exclude traffic and threat log from exporting to syslog server ?

Just i want to forward only system and configuration logs to syslog server instead of sending all the logs.

Thank you

Gururaj


Accepted Solutions
Highlighted
L4 Transporter

You can set the syslog server to none in the log forwarding profile and select the syslog server profile for the system and configuration logs.

View solution in original post


All Replies
Highlighted
L4 Transporter

You can set the syslog server to none in the log forwarding profile and select the syslog server profile for the system and configuration logs.

View solution in original post

Highlighted
L4 Transporter

sys.PNG.png

Highlighted
L4 Transporter

conf.PNG.png

system.PNG.png

Highlighted
L4 Transporter

You probably have a log-forwarding profile configured for each security policy, so the traffic and threat logs can be forwarded to the syslog server. So you can edit the log forwarding profile to not forward logs to the syslog server as indicated above by shasnain. Configure the Log settings under Device tab: Device tab--->Log settings-->System or Config to forward these logs to the syslog server.

Hope that helps!

Aditi

Highlighted
L6 Presenter

Traffic and threat syslog will not come until you configure from security rule.Just remove forwarding from rules.

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!