How to setup syslog server in UBuntu

advertisement

Just setup a syslog server in Ubuntu Linux to collect logs from firewall. To setup a syslog server in Ubuntu is easy, to setup a syslog server that collect remote logs is a bit tricky. FYI, once syslog server started, it is listening on the port 514 on UDP protocol. After few hours of testing, finally the syslog server is up and running. So here i share my experience on how to setup syslog server in Ubuntu Linux to everyone.

To setup syslog server in UBuntu Linux, follow the steps below:-

  • First you need to make sure you are login as root, then stop the syslog service
  • Open /etc/sysconfig/syslog with your favourite editor and look for the line below:-

    and edit the line to:-
  • Now open /etc/default/syslogd file with your editor and look for

    and change it to

    ** This is the steps that i miss previously and result the syslog server not listening for remote log. Other linux distro do not need to perform this step
  • Restart the syslog service
  • Now you need to configure the ubuntu firewall to allow the log sender IP. We assume the log sender is 192.168.0.100 and our ubuntu syslog server IP is 192.168.0.1. So, just enter the command below:-

    ** Remember to change the IP above to your server IP
  • To check if your syslog is listening on port 514, run the command below:-

    and you should see the line below, else your syslog is not listening for remote log.
  • Done. you just setup your syslog server in Unbuntu Linux. Happy logging :)

Related posts:

Free FTP Client for Mac OS X / Win XP / Vista
Linux - How to check memory usage
Secure file transfer thru scp in Mac and Linux
Free image editor for Mac OS X / XP / Vista / Linux
N900 virtual keyboard not working after uninstall SCIM
How to shrink worksheet for printing in Calc - OpenOffice
Contact Form 7: Clear all field except specific after submission
WordPress: add javascript event after widget save






Leave a Reply