Home › Glossary › Log forwarder

Log forwarder

A Linux server set aside to collect CEF and Syslog messages from devices, by default on port 514, using rsyslog or syslog-ng, and pass them through the Azure Monitor Agent to the Microsoft Sentinel workspace.

Read more: Microsoft Learn

In the Ultra Transcenders books

SC-200

Each book explains Log forwarder in context, with comparison tables and the common traps.

Terms in this definition

Related terms

See Log forwarder in the full glossary