Start a conversation

Configuring GFI EventsManager to Receive Syslog Messages

Overview

This article provides a step-by-step process on configuring GFI EventsManager to receive Syslog messages.

Process

User-added image

GFI EventsManager is designed to act as a Syslog server and receive Syslog events from various devices including Cisco PIX firewall. In order to use GFI EventsManager as a Syslog server, you must configure the Cisco PIX firewall and similar devices to send Syslog messages directly to the machine that is running GFI EventsManager.

User-added image

By default, GFI EventsManager will listen for Syslog messages on port 514. Therefore, you must make sure that this port is not being used by other applications. The port on which GFI EventsManager listens for Syslog messages is configurable through the management console.

User-added image

To enable GFI EventsManager to collect Syslog events you need to:

  1. Bring up the (computer/computer group) properties dialog.
  2. Click on the Syslog tab.
  3. To enable the Syslog server and listen for messages sent by the computer in a computer group, select the option 'The computer specified in this group will send Syslog events'.

Related Articles

 

Choose files or drag and drop files
Was this article helpful?
Yes
No
  1. Priyanka Bhotika

  2. Posted

Comments