Print

Configuring Primary EPM server to write to the local syslog server

About this task

When directing audit or event logs to a syslog server, instead of specifying an external syslog server in the EPM web interface, you can direct the logs to the Primary EPM local syslog server over any UDP port. The default syslog port is 514.

Procedure

  1. Log on to the EPM web interface.
  2. On the EPM navigation pane, click System Configuration > EPM Servers.
  3. Click Syslog Settings.
  4. In the Syslog Settings page, do the following to specify what logs are to be written to a syslog server:
    1. In the Send Audit Logs to Syslog field, select Yes.
    2. In the Send Event Logs to Syslog field, select Yes.
    3. In the Syslog Server IP Address field, enter the local IP address of the Primary EPM server.
    4. In the Syslog Server Port field, enter the port number of the Primary EPM server.

      Ensure that the firewall policy allows the communication of this port.

      Make a note of the port as you have to manually configure this in the Primary EPM syslog.conf file so it can listen to the logs being sent to it.

  5. Click Apply and Save.

Next Steps

Configure the Primary EPM syslog server with a forwarding rule to divert securely to an external syslog server.