enVision 3.5.x
TCP
collection
The setup for syslog over TCP is on the syslog collector configuration screen. Select Overview > System Configuration > Services > Manage Collector Service then select the appropriate site/Node link, this will display the main details about the syslog collection and at the end of the details is a line for TCP Information (this may be collapsed so look at the right hand side for the expand/collapse icon).
The RFC (Reliable Delivery for syslog at http://www.ietf.org/rfc/rfc3195.txt) suggests the well known port syslog-conn 601/TCP although use of this is optional and (as an example) a default Cisco PIX configuration uses 1468/TCP.
After selecting the listener port number you click the Add button to enter the IP addresses of devices which will use this facility. Also, as you may find in a variety of notes in the internet about syslog over TCP, you need to specify a delimiter for the different messages as (unlike UDP) it will not always be one message per single packet. Use the default delimiter initially and then review the results before assuming that any alteration in the settings is required.
Setting up an enVision system to allow syslog over TCP does not stop the UDP collection and the system will read from both TCP and UDP at the same time.
Note: There is an option sometimes added to Linux known as syslog-ng which has d_tcp configured as the syslog destination which may also be another TCP device used to send syslog data as well as Cisco PIX
Related Articles
Forward syslog messages in RSA Authentication Manager 8.0 through 8.3 240Number of Views Formatting for syslog data sent from RSA Authentication Manager 8.x 415Number of Views Allow a User to Authenticate Without an RSA SecurID PIN 54Number of Views Password change fails for users in an external identity source via Self-Service Console in RSA Authentication Manager 8.x 345Number of Views Identity Router Audit Log Messages 114Number of Views
Trending Articles
How to manipulate imported RSA SecurID Software Token(s) on an iPhone or iPad device Unable to login to RSA Authentication Manager Security Console as super admin RSA MFA Agent 2.3.6 for Microsoft Windows Installation and Administration Guide Manual synchronization introduced in RSA Authentication Manager 8.2 Service Pack 1 patch 6 Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory