Skip to main content

Syslog Management Integration

Overview

Syslog Management Integration is used to connect TAKAKRYPT with an external Syslog server so that logs and system activities can be sent automatically to a centralized log storage location. This integration helps administrators monitor system activity, perform operational analysis, and support audit and security investigation needs.

By leveraging Syslog, all activity records from TAKAKRYPT can be collected together with logs from other systems on a single monitoring platform. This facilitates the process of searching for information, correlating events, and identifying problems that occur in the operational environment.


Syslog Management Integration Functions

Syslog Management Integration serves to:

  • Send TAKAKRYPT activity logs to an external Syslog server automatically.
  • Provide a centralized log recording mechanism.
  • Support the monitoring and analysis of system activity.
  • Assist in tracking user activity and configuration changes that occur in the system.
  • Provide log data that can be used for audit and investigation needs.

Syslog Management Integration Uses

Syslog Management Integration is used to:

  • Facilitate the management of logs from various systems in a single location.
  • Speed up the process of identifying and handling operational disruptions.
  • Help the security team analyze activities that occur in the system.
  • Support the fulfillment of information security compliance and audit needs.
  • Provide activity history that can be used as a reference when performing troubleshooting.

Syslog Management Integration Configuration

When creating a Syslog Management Integration configuration, administrators need to complete the following information.

1. Status

Specifies the status of the Syslog integration on TAKAKRYPT.

If the status is enabled, the system will begin sending logs to the configured Syslog server. The Last Run information displays the last time the log delivery process was performed.

2. Host

Specifies the address of the destination Syslog server that will receive logs from TAKAKRYPT.

The value used can be either an IP address or a hostname according to the configuration of the Syslog server available in the infrastructure environment.

3. Enable TLS

Specifies the use of a connection using Transport Layer Security (TLS) when sending logs.

If enabled, communication between TAKAKRYPT and the Syslog server will be encrypted to improve data security during the transmission process.

4. Port (TCP)

Specifies the communication port used by the Syslog server to receive logs from TAKAKRYPT.

The port must be adjusted to match the configuration used on the destination server.

Test Connection

Used to test the connection to the Syslog server before the configuration is applied.

This feature helps ensure that the host address, port, and connection settings are correct so that the log delivery process can run properly.


How Syslog Management Integration Works

  1. The administrator fills in the Syslog server address and the port used.
  2. The administrator determines whether communication uses TLS or not.
  3. Before the configuration is applied, the administrator can use the Test Connection feature to ensure that the Syslog server can be accessed and can receive connections from TAKAKRYPT.
  4. After the configuration is saved and the status is enabled, TAKAKRYPT will send activity logs to the Syslog server automatically.
  5. The sent logs can be used for monitoring, auditing, security analysis, and troubleshooting on the log management platform used by the organization.