TCP Syslog protocol configuration options
Configure a TCP Syslog protocol log source to receive syslog events from network devices that support Syslog event over TCP for default listener syslog port 514.
The TCP Syslog protocol is a passive inbound protocol. The log source creates a listen port for incoming Syslog events.
You can restart event collection services after deployment of new jar or
rpm file by entering the following
command:
systemctl restart ecs-ec-ingressThe following table describes the log source configuration parameters for the TCP Syslog
protocol:
| Parameter | Description |
|---|---|
| Log Source Identifier | An IP address or hostname to identify the log source. |
| Incoming Payload Encoding | An option to decode the incoming payload based on type of encoding from source end. The
following options are available.
|