AnsweredAssumed Answered

8.4 Patch 9 question

Question asked by David Berner on May 14, 2020
Latest reply on May 14, 2020 by Edward Davis

After applying 8.4 patch 9, our syslog tool stopped receiving the following logs:Administrative Audit, Runtime Audit (includes Authentications), and System

 

Is there something we need to modify on the syslog side that changed with 8.4 patch 9?

 

I confirmed the syslog service is running and that traffic is being sent using:

 

000017542 - How to verify RSA Authentication Ma... | RSA Link 

service syslog status

000017542 - How to verify RSA Authentication Ma... | RSA Link 

tcpdump -i eth0 host <IP_syslog

Outcomes