Users Guide
Using the CLI 257
SYSLOG
The switch supports sending logging messages to a remote SYSLOG server.
The administrator configures a remote log server to which SYSLOG messages
are sent.
The following rules apply:
• The administrator configures a remote SYSLOG server to which system
logging messages are sent.
• Log messages are implementation-dependent but may contain debug
messages, security or fault events.
• The switch maintains at most the last 1000 system events in the in-
memory log.
Security Logs
The system log records security events including the following:
• User login.
• User logout.
• Denied login attempts.
• User attempt to exceed security access level.
• Denied attempts by external management system to access the system.
The security log record contains the following information:
• The login name, if available, or the protocol being accessed if the event is
related to a remote management system.
• The IP address from which the user is connecting or the IP address of the
remote management system.
• A description of the security event.
• A timestamp of the event
If a SYSLOG server is configured and available, the switch sends security
records to the configured servers.