NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

jrk1977's avatar
jrk1977
Aspirant
Nov 08, 2017

SYSLOG not received in manageengine eventlog analyzer

System Description -M4300-28G ProSAFE 24-port 1G and 2-port 10GBASE-T and 2-port 10G SFP+
System Software Version "12.0.2.17"

 

DearTeam,

We have configure the Vlan and its working fine.

vlan database
vlan 16,18-19-----------------------------172.29.0.0/21
vlan name 16 "SERVERS"------------172.16.0.0/22
vlan name 18 "MANAGEMENT"-----172.18.0.0/24

vlan name 19 "Guest-WiFi"-----------172.19.0.0/24

vlan routing 1 1
vlan routing 16 2
vlan routing 18 3
vlan routing 19 4

Default route to Firewall------172.29.0.*/21

Static route to  172.16.0.0  to 172.29.0.*( Vlan16 to Firewall)

 

But the problem is ,We are not able to collect Syslog from core and Edge sw connected in Vlan1.

Syslog Server is connected in Vlan16 after configured Syslog in All devices also.

only Firewall connected in Vlan1 sending Syslog to log server...

Help me to solve the problem.

SYSLOG Server ip:172.16.0.0/22 (manageengine eventlog analyzer )

UDP PORT:514

I am attaching my config file 

 

 

4 Replies

  • DaneA's avatar
    DaneA
    NETGEAR Employee Retired

    Hi jrk1977,

     

    Welcome to the community! :) 

     

    By default, VLAN 1 is used as source interface.  Have you tried to change the source interface to either of the following: Routing Interface, Routing VLAN, Routing loopback interface, Tunnel interface or Service port and check if the syslogs will show up? 

     

    From the syslog server, are you able to get replies when you ping the IP Address of all VLANs?  

     

    Also, try to change the Severity Filter from Alert to Debug and check if the syslogs will show up?  As reference, kindly read pages 428-429 of the M4300 Series software administration manual here about Logging Hosts.

     

    Also, kindly read pages 631-634 of the M4300 Series user manual here about Syslog and Syslog Host Settings.

     

     

    Regards,

     

    DaneA

    NETGEAR Community Team

  • DaneA's avatar
    DaneA
    NETGEAR Employee Retired

    jrk1977,

     

    I just want to follow-up on this.  We’d greatly appreciate your feedback.

     

     

    Regards,

     

    DaneA

    NETGEAR Community Team

    • jrk1977's avatar
      jrk1977
      Aspirant

      Hi Thanks for your Reply,

      That helps me ya lot

       

      By Changing the Severity Filter from Alert to Debug its solves the problem.

      Now My Logs Server receiving the Logs from M4300 and Edge M4100

       

      Thanks You So much...

      • DaneA's avatar
        DaneA
        NETGEAR Employee Retired

        jrk1977,

         

        Thanks for the update!  I'm glad to know that you are now receiving logs from the M4300 and M4100 switches.  :) 

         

        Since your concern has been resolved, I encourage you to mark the appropriate reply as the “Accepted Solution” so others can be confident in benefiting from the solution. The NETGEAR Community looks forward to hearing from you and being a helpful resource in the future!

         

         

        Cheers,

         

        DaneA

        NETGEAR Community Team

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More