Forum Discussion
rahulb25
Jan 25, 2025Copper Contributor
Juniper SRX 340 logs not read by rsyslog
I have configured Juniper SRX 340 Junos logs to be forwarded to a centralized syslog server before reaching Microsoft Sentinel.
I can see the Juniper logs on the syslog server while doing a TCPDUMP but, the same logs are not ready by rsyslog.
The same syslog server is also receiving the logs from Cisco ASA. The rsyslog is able to read the ASA logs with no issues and further forward them to Sentinel through AMA agent.
I don't have any filters applied in rsyslog.conf file and I'm capturing everything (*.*) all syslog facility and severity to a log file but, still the Juniper logs are not recognized by rsyslog. Please help on resolving this issue
No RepliesBe the first to reply