Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Mahlako
New Contributor

Adding second SYSLOG Server

we configure fortigate device to send logs to FortiAnalyzer via syslog they are 6.0. we have SYSLOG server configured on the client's VDOM.

Now I need to add another SYSLOG server on all VDOMs on the firewall.

 

How do I add the other syslog server on the vdoms without replacing the current ones? 

 

2 REPLIES 2
Yurisk
SuperUser
SuperUser

Fortigate can send logs to max 4 Syslog servers, so you configure the second server using the same commands but syslogd2 on CLI. 

More info here https://kb.fortinet.com/kb/documentLink.do?externalID=FD44614 

https://docs.fortinet.com/document/fortigate/6.2.1/cli-reference/356620/log-syslogd2-setting 

 

Yuri https://yurisk.info/  blog: All things Fortinet, no ads.
Yuri https://yurisk.info/ blog: All things Fortinet, no ads.
ede_pfau

just curious: why would you send logs to a FAZ via syslog? FAZ uses it's own protocol for this, adding the benefit of obtaining log data that can be searched, cumulated and charted - all of which cannot be done with 'plain' syslog data.


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors