Forum Discussion
JRahm
May 07, 2008Admin
In my experience, there is a subtle syslog performance difference between the basic log command and specifying the local0. A while back there was a thread where Deb and I did some testing between the two and found that syslog-ng overran with the repeated X times entry instead of the actual entries when local0. was not specified. Even with the local0. defined, syslog will be overrun approaching 200 messages / second.
As complete logfile integrity is a requirement for some security certifications, does anyone know how the ASM logging is handled as a add-on module on LTM? Most firewalls I've worked with log to a binary file and there is an ascii extraction tool to analyze near-real time.