Get Started!

˂ Return to FAQ

Many companies choose to centralize security and network logging to a single Syslog server or appliance to reduce the burden of log collection, investigation and reporting across many devices. While XTAM does include its own logging engine that captures and stores events, it can also be configured to output this information to your centralized syslog server.

To output XTAM logging to your syslog server, please perform the following steps.

(June 4, 2018) – If you have updated to XTAM version 2.3.201806032154 or later, you can now configure Syslog integration by simply navigating to Administration > Settings > Syslog within the XTAM interface.

1

On the host where XTAM is installed, open the file {XTAM_HOME}\web\conf\log4j.pam.properties in a text editor.

2

Modify the second line of this file
from this: log4j.rootLogger=INFO, file, stdout
to this: log4j.rootLogger=INFO, file, stdout, SYSLOG

3

At the end of the file, copy and paste the following lines of code:

# Syslog Messages
log4j.appender.SYSLOG=org.apache.log4j.net.SyslogAppender
log4j.appender.SYSLOG.threshold=INFO
log4j.appender.SYSLOG.syslogHost={add your Syslog Host name or IP address here}
log4j.appender.SYSLOG.facility=LOCAL4
log4j.appender.SYSLOG.header=true
log4j.appender.SYSLOG.layout=org.apache.log4j.PatternLayout
log4j.appender.SYSLOG.layout.conversionPattern=XTAM [%p] %c{3.}:%L - %m%n
4

Modify the log4j.appender.SYSLOG.syslogHost= line above to add your Syslog host name or IP address.
If you wish to use a non-standard port, then simply add your custom port number to the end of your Syslog name or IP address. :port

5

When finished, Save and close this file.

6

The syslog output is delivered over the UDP port by default, so if necessary ensure that port 514 is open.

7

Restart the service PamManagement (Windows) or pammanager (Linux).

Once the service has completed the restart process, your Syslog server or appliance should immediately begin receiving log events from XTAM.

 
 

Copyright © 2018 Xton Technologies, LLC. All rights reserved.