Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

EDR: Event Forwarder Syslog Format Will Not Save

EDR: Event Forwarder Syslog Format Will Not Save

Environment

  • EDR Server: Version 7.x
  • EDR Forwarder: Version 3.7.1

Symptoms

  • UI suggests <protocol>://<fqdn>[:<port>] as the Syslog Destination but when attempting to input using this format the following error is received: 
level=info msg="Running with metrics"time="2020-09-29T16:11:50-04:00" level=fatal msg="Error connecting to 'udp://192.168.146.155:514': dial udp: lookup //192.168.146.155: no such host

 

Cause

  • Improper formatting in UI and Documentation

Resolution

  • Use the following format to add the appropriate Syslog Destination: 
    • <protocol>:<fqdn>:<port>
    • udp:192.168.146.155:514
    • tcp:192.168.146.155:514

Related Content


Labels (1)
Tags (2)
Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎09-29-2020
Views:
407
Contributors