Adding a system-level syslog server (recommended)

Prev Next

If you want to send system-level messages to the Trellix Helix syslog server, then you must add a system-level syslog server to the DSM.

To add a system-level syslog server to the DSM
  1. Log on to the DSM as an administrator. Choose either System Administrator or All for the administrator type. Do not switch into any domain.

  2. Select Log>Syslog, and then click Add.

  3. Enter information in the following fields to match those set up on the Trellix Helix system:

    • Server Name (for example: tap11206 – should be FQDN or IP address)

    • Transport Protocol (for example: TCP)

    • Port Number (for example: 5514)

    • Message Format: Select CEF from the menu.

    Vormetric 2.png
  4. Click OK and verify the details on the summary screen.

    Vormetric 3.png