Syslog to a different port

I have a 2801 router and would like to setup syslog to send messages to a different port other than the default of 514. Is this possible? If so, how would I go about implementing this? Thanks in advance.

-- Tony

Reply to
Anthony Fischer
Loading thread data ...

not possible in IOS AFAIK

Reply to
Merv

AFAIK it is not possible to config the syslogging port that IOS send syslog messages to

Reply to
Merv

My research leaves me to believe that this is true. While I have seen instances of firewalls being able to send to a specific port, I haven't seen anyone doing it on a router. Thanks for the reply.

-- Tony

Reply to
Anthony Fischer

Anthony Fischer schrieb:

Route map -> Loopback -> static NAT ?

Haven't tried, and it's too weird...

Reply to
Uli Link

Ah well! That may be correct however -

There is always NAT.

e.g. 2 x loopback interfaces that are NAT Inside and Outside respectively. Logging source may have to be yet another loopback.

Policy routing to route the appropriate traffic through them. By the way NAT can translate _only_ the port and leave the addresses unchanged.

It _might_ even work but you would need to be desperate. No make that REALLY DESPERATE.

No make ......

I wouldn't recommend it.

Wouldn't be so bad though to put a dedicated NAT router in front of the syslog server if that's what it took to solve a problem.

Get a syslog server that can listen on two ports. Do the NAT on the syslog server = Same as above.

Seems you can change the port on a pix logging host #.#.#.# tcp 1740 at least for TCP.

I was bored so I looked up some syslog stuff.

It does look as if a syslog-ng can be configured to accept from multiple sources.

formatting link
"Of course you can. Just add a source: "

source local { unix-stream("/dev/log"); internal(); }; source jail1 { unix-stream("/jail/dns/dev/log"); }; source jail2 { unix-stream("/jail/www/dev/log"); };

formatting link
A source can be a udp port, it seems likely that you can have more than one udp source.

Good luck.

Reply to
anybody43

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.