Configures forwarding of audit and security events to an external syslog server. Syslog integration allows centralised log management with tools such as Splunk, Graylog, ELK Stack, or a SIEM.

Settings
Enabled
Activates syslog forwarding. Enabled by default.
Host
The hostname or IP address of the syslog server (e.g. syslog.example.com or 192.168.1.10 ). Required.
Port
The UDP or TCP port on which the syslog server is listening. Default is 514.
Protocol
Note
Optional internal note describing the syslog configuration (not forwarded to the server).