Junos
Reply
Visitor
alex2308cc
Posts: 5
Registered: ‎10-05-2010
0
Accepted Solution

JunOS: Forward all but Traffic Logs to Syslog Server

Hi,

I'd like to know how to configure Log forwarding on the JunOS device to forward all but Traffic logs. This is what my config looks like:

set system syslog host 192.168.2.21 any any
set system syslog host 192.168.2.21 facility-override authorization
[edit system syslog host 192.168.2.21]

 

with 192.168.2.21 beeing my Syslog Server obviously.

 

How do you do this in JunOS? 

Contributor
syednasirraza
Posts: 114
Registered: ‎02-27-2012
0

Re: JunOS: Forward all but Traffic Logs to Syslog Server

hi alex...

if you are asking how to code for loging some info from your device on your remote server, have not you replied it yourself.... i mean this is how it is::

set system syslog host <ip-address> <faclity> <severity level>

faclity -> u have to decide yourself like authorization, interactive comands, change-log or any

severity-> again u have to decide like info, error, any

(Although any any will generate too much of logs, so its better to be specific)....

So isnt it what u askd and replied??? or am i mistaken to get your question????

NASIR RAZA
JNCIA-JUNOS, JNCIS-ENT.
Visitor
alex2308cc
Posts: 5
Registered: ‎10-05-2010
0

Re: JunOS: Forward all but Traffic Logs to Syslog Server

I'd like to log everything except traffic logs. Thats not so hard to understand, is it? 

Super Contributor
Super Contributor
Ulf
Posts: 144
Registered: ‎11-13-2008

Re: JunOS: Forward all but Traffic Logs to Syslog Server

Hi,

 

does either of these help:

 

http://kb.juniper.net/InfoCenter/index?page=content&id=KB22588

 

http://kb.juniper.net/InfoCenter/index?page=content&id=KB22177

 

Best Regards

 

Ulf

If this worked for you please flag my post as an "Accepted Solution" so others can benefit. A kudo would be cool if you think I earned it.
Visitor
alex2308cc
Posts: 5
Registered: ‎10-05-2010
0

Re: JunOS: Forward all but Traffic Logs to Syslog Server

That worked, thanks Ulf!

 

(You really need the quotes in the match statement! My mistake trying to make a filter without the quotes ", it will end up in a filter called match "!", which is senseless) 

Visitor
alex2308cc
Posts: 5
Registered: ‎10-05-2010
0

Re: JunOS: Forward all but Traffic Logs to Syslog Server

to finalize it, filter for "RT_FLOW_SESSION" which is the keyword for traffic

Copyright© 1999-2013 Juniper Networks, Inc. All rights reserved.