Forum Discussion
Kiran_145850
Nimbostratus
Feb 28, 2014irlue to send the logs to remote server using port number will use which protocol by default TCP/UDP
Hi,
I am using an irule to send the logs to remote server . Just wanted to know th eport number mentioned in irule will use UDP or TCP .
I belive its UDP , but requesting someone to please ...
Kevin_Stewart
Employee
Feb 28, 2014The difference between "ntalk" and "syslog" in the captures is based on tcpdump's internal understanding of specific port-protocol mappings. You can disable that visual mapping with the following:
tcpdump -lnni 0.0 udp and host x.x.x.x and port 518
In any case, it does look like the port 518 traffic is leaving the box. The next step might be to ensure the remote port 518 syslog server is receiving it. If you can do a tcpdump on that server, look for the packets from the F5.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects