ClearPass Policy Manager can export session data (see Live Monitoring: Access Tracker), audit records (see Audit Viewer) and event records (see Event Viewer). You can send this information to one or more syslog targets (servers).
When adding an syslog target, you must perform all tasks from a single browser tab. The Policy Manager WebUI uses server-side session caching during add or edit workflows, so performing add or edit actions on the same target from different tabs of a same browser can lead to data loss and impact network access.
To add a syslog target:
| 1. | Navigate to Administration > External Servers > Syslog Targets. |
The page opens.
Figure 1 Syslog Targets Page
| 2. | Click the Add link. |
The dialog opens:
Figure 2 Add Syslog Target Dialog
| 3. | Specify the parameters as described in the following table: |
Table 1: Add Syslog Target Parameters
|
Parameter |
Action/Description |
|
Host Address |
Enter the Syslog server hostname or IP address. The IP address can be an IPv4 or IPv6 address. |
|
Description |
Enter a short description of the Syslog server. |
|
Protocol |
Select one of the following options: : This option reduces overhead and latency. : This option provides error checking and packet delivery validation. |
|
Server Port |
The default port number is . If necessary, change the server port number. |
| 4. | Click . |
The new Syslog Target is now added to the list:
Figure 3 Syslog Target Added