Forum Discussion

rahulb25's avatar
rahulb25
Copper Contributor
Jan 25, 2025

Juniper SRX 340 logs not read by rsyslog

I have configured Juniper SRX 340 Junos logs to be forwarded to a centralized syslog server before reaching Microsoft Sentinel. 

I can see the Juniper logs on the syslog server while doing a TCPDUMP but, the same logs are not ready by rsyslog. 

The same syslog server is also receiving the logs from Cisco ASA. The rsyslog is able to read the ASA logs with no issues and further forward them to Sentinel through AMA agent. 

I don't have any filters applied in rsyslog.conf file and I'm capturing everything (*.*) all syslog facility and severity to a log file but, still the Juniper logs are not recognized by rsyslog. Please help on resolving this issue

No RepliesBe the first to reply

Resources