Show rsyslog configuration settings using the CLI

Prev Next

Use the CLI show fenotify rsyslog command to verify the configuration settings for rsyslog notifications. To configure rsyslog notifications using the CLI, see Configuring rsyslog notifications using the CLI.

Prerequisites

  • Administrator or Operator access to the Email Security - Server appliance

To show rsyslog configuration settings:
  1. Go to the CLI enable mode:

    hostname > enable
  2. Enter the command:

    hostname # show fenotify rsyslog

Example

The following tables list an example of rsyslog configuration settings. As shown below, the settings are divided into three groups.

hostname # show fenotify rsyslog

Configuration:

Parameter

Value

Description

Protocol Enabled

yes

Enable rsyslog notification

default-delivery

per-event

Send a notification after each alert event by default

default-format

cef

Use the CEF format by default

default-protocol

udp

Protocol used to send rsyslog notifications by default

default-send-as

warning

All notifications are set at the warning severity by default

Alerts:

Parameter

Value

Description

domain-match

yes

Enable logging of domain-match alert types

infection-match

yes

Enable logging of infection-match alert types

ips-event

yes

Enable logging of ips-event alert types

malware-callback

yes

Enable logging of malware-callback alert types

malware-object

yes

Enable logging of malware-object alert types

riskware-callback

yes

Enable logging of riskware-callback alert types

riskware-infection

yes

Enable logging of riskware-infection alert types

riskware-object

yes

Enable logging of riskware-object alert types

smartvision-event

no

Disable logging of smartvision-event alert types

web-infection

yes

Enable logging of web-infection alert types

Consumers:ex2500

Parameter

Value

Description

enabled

yes

Enable rsyslog notification for ex2500

prefer-message-send-as

alert

All notifications are set at the alert severity for this consumer