1 (edited by maxyip 2021-07-08 16:02:44)

Topic: How can I send all log to SIEM. e.g. Graylog

==== REQUIRED BASIC INFO OF YOUR IREDMAIL SERVER ====
- iRedMail version (check /etc/iredmail-release): 1.4.0
- Deployed with iRedMail Easy or the downloadable installer? downloadable installer
- Linux/BSD distribution name and version: Alma Linux
- Store mail accounts in which backend (LDAP/MySQL/PGSQL): LDAP
- Web server (Apache or Nginx): Nginx
- Manage mail accounts with iRedAdmin-Pro? no
- [IMPORTANT] Related original log or error message is required if you're experiencing an issue.
====
Hello
I'm a newbie with iRedMail
I wonder how could I send log to an external server e.g.SIEM (Graylog)
I've freshly installed iRedMail 1.4.0 on Alma Linux
Thank You!

----

Spider Email Archiver: On-Premises, lightweight email archiving software developed by iRedMail team. Supports Amazon S3 compatible storage and custom branding.

2

Re: How can I send all log to SIEM. e.g. Graylog

See:

man rsyslog.conf