Send logs with specific strings

General support questions
Post Reply
MamboJumbo
Posts: 1
Joined: 2019/07/19 08:41:25

Send logs with specific strings

Post by MamboJumbo » 2023/07/19 08:47:32

Hello - I would like to send logs using syslog to a remote server like a SIEM and need some help as I have searched numerous forums but to no avail.

I have a set of string like *crond* , *sshd* etc . I want my servers to send logs only if it contains these strings and nothing else.

Post Reply