Forum Discussion
dipta_03_149731
Nimbostratus
Feb 02, 2016We have a Qradar remote server which wants to see logs which will allow them to trace traffic back to the source when traffic passes through the F5
Here is the current config of your remote logging:
Log to a remote host
destination d_loghost {
udp("10.195.55.x" port(514));
udp("172.30.201.x" port(514) localip(172.30.27.x)); };
...
pete_71470
Cirrostratus
Feb 03, 2016You could use a packet filter that logs: Network -> Packet Filters -> Rules. This could generate a giant flood of traffic and might affect performance of your F5. You can generate specific rules to narrow down the scope of logging.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects