Configuring TLS Syslog
TCP connections between log sources and LogLogic LMI can be secured by TLS.
TCP syslog feeders, rsyslog feeders, and ULDP clients can connect to LogLogic LMI via TLS using a certificate.
By default, a TCP collector supports two ports 514 and 6514, and up to 14 more custom ports. If the firewall is enabled on the LogLogic LMI appliance, you must run system firewall to add these ports to the firewall rule. The rules take effect automatically.
Every TCP collector's port can be used for collecting logs - either unencrypted or by using TLS. The TCP collector automatically detects secure TLS TCP connections.
The port numbers and other information can be configured using a configuration file /loglogic/conf/tcpcoll.conf.