Syslog service restarts

Last updated on:

About the rule

Rule Type

Standard

Rule Description

The syslog service is restarted on a Unix device.

Severity

Critical

Rule Requirement

Criteria

Action1: actionname = "unix_syslog_service_restarted" select Action1.HOSTNAME,Action1.MESSAGE

Detection

Execution Mode

realtime

Log Sources

Miscellaneous