is it possible to exclude traffic and threat log from exporting to syslog server ?

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

is it possible to exclude traffic and threat log from exporting to syslog server ?

L4 Transporter

Hi All,

is it possible to exclude traffic and threat log from exporting to syslog server ?

Just i want to forward only system and configuration logs to syslog server instead of sending all the logs.

Thank you

Gururaj

1 accepted solution

Accepted Solutions

L4 Transporter

You can set the syslog server to none in the log forwarding profile and select the syslog server profile for the system and configuration logs.

View solution in original post

5 REPLIES 5

L4 Transporter

You can set the syslog server to none in the log forwarding profile and select the syslog server profile for the system and configuration logs.

sys.PNG.png

conf.PNG.png

system.PNG.png

L4 Transporter

You probably have a log-forwarding profile configured for each security policy, so the traffic and threat logs can be forwarded to the syslog server. So you can edit the log forwarding profile to not forward logs to the syslog server as indicated above by shasnain. Configure the Log settings under Device tab: Device tab--->Log settings-->System or Config to forward these logs to the syslog server.

Hope that helps!

Aditi

L6 Presenter

Traffic and threat syslog will not come until you configure from security rule.Just remove forwarding from rules.

  • 1 accepted solution
  • 4132 Views
  • 5 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!