12-18-2013 08:50 AM
We're setting up logging going to a Splunk syslog server and I've been asked if I can send it to a port other than default syslog port 514. Is this possible?
Solved! Go to Solution.
12-18-2013 12:38 PM
Unfortunately, I do not believe this is possible.
ACDX #420 | ACMP
[If you found my post helpful, please give kudos!]
01-03-2014 09:33 AM
03-27-2016 01:01 PM
couldn't you just destation NAT to the port you want?
The below is if 192.168.1.36 is your controller and 10.10.10.10 is your syslog server. That last number of 200 in my example is what port you would like it changed to. You then apply it to your uplink port.
ip access-list session syslog-des-nat
host 192.168.1.36 host 10.10.10.10 svc-syslog dst-nat 200
interface gigabitethernet 0/0/0
trusted vlan 1-4094
ip access-group "syslog-des-nat" session
switchport mode trunk