Chapter 6. Collecting logs from IBM System i

Patrick Townsend & Associates (http://www.patownsend.com) has partnered with BalaBit IT Security (the developer of syslog-ng) to bring the syslog-ng product to the System i platform. The syslog-ng PE application can be installed and run as a service directly in the Portable Application Solutions Environment (PASE) of the System i platform. Running syslog-ng in PASE allows you to transfer the logs of your server applications that are running in the PASE to a remote syslog-ng server using UDP, TCP, or SSL-encrypted TCP connections (see Section 6.9, “Configuring IBM System i Servers” for details). However, syslog-ng alone cannot access the native logs of the IBM System i, for that you need the syslog-ng Agent for IBM System i application.

The syslog-ng Agent for IBM System i application provides extended support for sending security, operator, server, and user log information to a syslog-ng server, or any syslogd or syslog-ng compatible server. The syslog-ng Agent for IBM System i (also called Alliance LogAgent for System i) application can help you bring your IBM System i into your Security Information Management strategy to meet regulatory compliance requirements and to properly monitor for potential security breaches.

This chapter describes how to use the syslog-ng Agent for IBM System i.


© 2007 BalaBit IT Security
Please send your comments or documentation bugs to: documentation@balabit.com