Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to change the output format of the log sent to a syslog-server

Hi

 

We have an XG firewall with SFOS 16.01.2 and are batteling with a logfile, which has plenty of columns in the output log, we don't need (as I'm not using several features). In the configuration of the syslog on the XG box, I only can define "Device Standard Format" to be used. We would like to define a log format, where we take some columns out of the log, that is being sent - how can we do that?

Example: In the log saved on the syslog-server I would like to have the columns "src_country_code" and "dst_country_code" not being existing, because I would configur the box to use a log format/definition, which would not contain them (as they are not used for our situation).

It is quite difficult, if you have a dual-monitor, using a 6pt-font and still don't get a whole dataset on one line, if half of the shown information is not being used...

Thank you for your help!Kind regards

David



This thread was automatically locked due to age.
  • Hi

     

    Any news on this? Could I offer some more information, which would help?
    -> initially I did have wrongly writetn "rows" instead of "columns", which made no sense in this question.

    I would be glad, getting help so I could work better with my log files...

     

    Thank you and kind regards

    David

  • Hi David,

    There is no change in the formatting for syslog server. I am not sure if you raised this as a feature request here. I didn't discover any feature request as yours so I guess you are yet to raise it and cast your vote.

    Thanks