# Syslog Monitoring Perform syslog monitoring and network management, from a unified console, OpManager [![Syslog monitoring in OpManager: Video](https://i.ytimg.com/vi/kEAjerPHwpU/maxresdefault.jpg)](https://www.youtube-nocookie.com/embed/kEAjerPHwpU?si=5VEYTbsfYx5B4Q5s) It is essential to have both active and passive monitoring capabilities in your network management tool. The active monitoring takes a proactive approach to keep networks healthy i.e. continuously scanning the network and trying to prevent or minimize the effects of a possible downtime/slowdown. With passive monitoring techniques, you are also armed with a sound troubleshooting mechanism to analyze any network incidents after they have occurred, despite having tried to prevent them through the proactive approach. Syslog monitoring is a good passive monitoring mechanism to compliment the continuous, active [SNMP monitoring](https://www.manageengine.com/network-monitoring/snmp-monitoring.html?syslog) done throughout the network. OpManager provides a rule–based method of reading incoming syslogs and associates alerts to these syslogs to notify required network personnel or perform other tasks e.g. a server/port shutdown. OpManager’s Syslog daemon supports a wide number of devices across multiple platforms. It supports any syslog exporting device or applications viz. Servers (Linux, UNIX, AIX and Solaris), routers, switches & etc.. No more do you have to switch between a log monitoring tool and a [network management](https://www.manageengine.com/network-monitoring/network-management.html?syslog) tool - network management through OpManager now also includes syslog monitoring, from all in one unified console. ## ManageEngine OpManager: The dynamic Syslog monitoring tool ![Syslog monitoring in OpManager: Syslog rules management](https://www.manageengine.com/network-monitoring/images/Syslog-OpManager.PNG) OpManager's Syslog monitoring helps you perform four major functions such as: **Syslog rules**: You can create rules to alert you on syslog messages from devices based on the severity of the event. You can also configure severity for [alerts](https://www.manageengine.com/network-monitoring/network-monitoring-alerts.html?syslog) or even ignore the event. To avert multiple alarms being raised for the same event, you can restrict alerting conditions to number of occurences and the time interval between them. **Port configuration**: OpManager's syslog monitor can help you [monitor specific port](https://www.manageengine.com/network-monitoring/switch-monitoring.html?syslog) through which syslogs transmit and assess the flow rate as well to ensure prompt syslog messages delivery. **Forward Syslog**: You can forward the received syslog messages to the destination device by specifying destination host and port. **Syslog viewer:** With Syslog viewer, you can have a unified view of syslogs received, their source, facility, severity and response received time. To summarize, OpManager's syslog monitor help: - Auto-splitting of messages to show sender, facility, severity, message. - Easy rule creation to identify required, important syslogs. - Filter on facility name, severity and keyword match/ regex. - Assign severities to incoming syslogs and create alarms from these. - Forward OpManager events as Syslogs or received Syslog message to another [NMS](https://www.manageengine.com/network-monitoring/network-management-system.html?syslog) platform. - Syslog widgets to know instantly about what’s happening in your network. - Know the syslog flow–rate into OpManager at any point of time. - Simplified and [customizable reporting](https://www.manageengine.com/network-monitoring/network-performance-reporting.html?syslog#custom-reports) based on host, data, severity, Group and by event type. A huge task for administrators is to maintain lengthy log messages which occupy enormous space. OpManager’s rule–based reading of syslogs allows the administrator to intelligently correlate incoming syslogs and thus do away with time–wasting syslog "noise". Logs help administrators to spot external attacks, analyze their patterns, recognize any breach in internal user access permissions, study system usage trends etc. Seasoned administrators monitor Syslogs and [Event Logs](https://www.manageengine.com/network-monitoring/eventlog-monitoring.html?syslog) to use these for: - Security audits (User Activity, Authentication violations and events, etc.) - Device and [System management](https://www.manageengine.com/network-monitoring/systems-management.html?syslog) (System Events, Device Errors, Kernel Messages, Drive failure, File system, System temperature problems, Network connections etc.) - Applications and Services performance management (Application or Service availability/ Errors//performance degradation, Database Warning, etc.) ## Discover more on Syslog monitoring ### Featured - [SNMP trap monitor](https://www.manageengine.com/network-monitoring/snmp-trap-monitor.html?syslog) - [Server log management](https://www.manageengine.com/network-monitoring/server-log-management-software.html?syslog) - [Applications monitoring](https://www.manageengine.com/network-monitoring/application-monitoring.html?syslog) ### Quick links - [Blogs](https://blogs.manageengine.com?syslog) - [E-books](https://www.manageengine.com/network-monitoring/ebooks.html?syslog) - [Videos](https://www.manageengine.com/network-monitoring/videos.html?syslog) - [Case studies](https://www.manageengine.com/network-monitoring/customer-recommends.html?syslog) - [Awards and Recognitions](https://www.manageengine.com/network-monitoring/network-software-review.html?syslog) ### Additional resources - **Blog**: [Log analytics and monitoring](https://blogs.manageengine.com/network/opmanager/2023/09/19/lama-log-analytics-and-monitoring-application.html?syslog) - **Whitepaper**: [Event log monitoring](https://www.manageengine.com/network-monitoring/monitoring-event-log-wp.html?syslog) - **Help**: [How to add syslog rules](https://www.manageengine.com/network-monitoring/help/add-syslog-rules.html?syslog) ## Related Products - [Network Monitoring](https://www.manageengine.com/network-monitoring/?relPrd) - [Bandwidth Monitoring & Traffic Analysis](https://www.manageengine.com/products/netflow/?relPrd) - [Network Configuration Management](https://www.manageengine.com/network-configuration-manager/?relPrd) - [Switch Port & IP Address Management](https://www.manageengine.com/products/oputils/?relPrd) - [Firewall Management](https://www.manageengine.com/products/firewall/?relPrd) - [Network Monitoring Software for MSPs](https://www.manageengine.com/network-monitoring-msp/?relPrd) - [IT Operations Management](https://www.manageengine.com/it-operations-management/) - [Application Performance Monitoring](https://www.manageengine.com/products/applications_manager/?relPrd)