IBM Verify

IBM Verify

Join this online user group to communicate across Security product users and IBM experts by sharing advice and best practices with peers and staying up to date regarding product enhancements.

 View Only

ISAM: Sending logs using syslog from a mapping rule

  • 1.  ISAM: Sending logs using syslog from a mapping rule

    Posted Wed December 11, 2019 05:30 AM
    Hello,

    We have a specific use case where we want to log a certain event dispatched from a mapping rule in ISAM to a remote syslog server. 
    When configuring ISAM, it is possible to send the logs to the trace.log file, and configure ISAM in the LMI to forward the trace.log file. This type of log forwarding is out of scope because we are only interested in a a specific log entry. 
    Is there any class available to send syslog events from a mapping rule directly? If not, is it possible to send logs to a seperate file in ISAM (not trace.log) and only forward this log file to our remote syslog server?
    thank you,
    Best regards,

    ------------------------------
    Sander Meyfroot
    ------------------------------