Jul 11 2019 07:46 PM
Checking on details in this:
https://docs.microsoft.com/en-us/azure/sentinel/connect-syslog
We have a working Linux Syslog Connector (not in Azure - it's onPrem) but it seems that while we can now see Heartbeat info coming thru that steps 3 & 4 above are not valid...
How can we get this working or have we somehow misunderstood some element?
Jul 14 2019 03:58 PM
I think that the instructions on the connector page are somewhat clearer:
Also, note that the agent configures behind the scenes rsyslog or syslogNG. If you did manual configuration yourself, it might override.