3.12. Configuring syslog-ng relays

To configure syslog-ng on a relay host, complete the following steps:

Procedure 3.6. Configuring syslog-ng on relay hosts

  1. Install the syslog-ng application on the host. See Chapter 4, Installing syslog-ng for details installing syslog-ng on specific operating systems.

  2. Configure the network sources that collect the log messages sent by the clients.

  3. Create a network destination that points to the syslog-ng server.

  4. Create a log statement connecting the network sources to the syslog-ng server.

  5. Configure the local sources that collect the log messages of the relay host.

  6. Create a log statement connecting the local sources to the syslog-ng server.

  7. Set filters and options (e.g., TLS encryption) as necessary.

In relay mode, syslog-ng cannot write messages received from network sources into files; the file() destination is disabled. The following sources are network sources: tcp(), tcp6(), udp(), udp6().


© 2007 BalaBit IT Security
Please send your comments or documentation bugs to: documentation@balabit.com