syslog configuration
Dear Forum Members,
I have edit syslog.conf file and add there IP of QRadar event Collector for Event collection. I have different machines of linux and I have done this successfully and recieved logs in QRadar. But My requirement is that I want,syslog send logs to QRadar with the linux IP not the hostname (as an identifier) currently hostname is the identifier of linux machine. because hostname is same of all my linux machines. and I can't understand which machine is send me the logs. so is want syslog send logs to QRadar with th IP.
Your Quick Response would help me to complete my task.
Thank You!
Regards,
Zabeeh.Abid
|