We are currently successfully sending logs to a syslog server on port 518 (UDP) but want to add a second server using port 1523 (UDP). I have tried amending rsyslog.conf using the File Editor from
Unfortunately no logs are sent to the server on port 1523, which I have confirmed using tcpdump.
Any suggestions how to resolve this problem?
Does it work if you only have 1523 defined in the rsyslog.conf? (confirming no firewalls in between)
It only works if I use the original IP address - I can use port 1523 OK.
If I try to use the new IP, no traffic is seen in the tcpdump, regardless of port
Download the new ePolicy Orchestrator (ePO) Support Center Extension which simplifies ePO management and provides support resources directly in the console. Learn more about ePO Support Center
2821 Mission College Blvd.
Santa Clara, CA 95054 USA
Consumer Support | Enterprise Support | McAfee.com
Legal | Privacy | Copyright © 2019 McAfee, LLC