Submit a ticketCall us

Systems Monitoring for Dummies
Our new eBook will teach you the fundamentals and help you create monitors and alerts that are effective, meaningful, and actionable. Monitoring is more than a checkbox on your to-do list. This free eBook will give you practical advice to help you succeed in all aspects of monitoring – discovery, alerting, remediation, and troubleshooting. Don’t miss out on this indispensable resource for newbies, experienced IT pros, and everyone in between. Register Now.

Home > Success Center > Kiwi Syslog Server > Set Up Ethereal to Capture Syslog Messages

Set Up Ethereal to Capture Syslog Messages

Table of contents

Updated April 28th, 2016

Issue: 

Kiwi Syslog Daemon is not receiving and displaying messages.
 

Cause:


There are several reasons why this problem occurs. 

then you can use a packet capture program such as Ethereal, http://www.ethereal.com.

 

Note: This fix requires a third party application which may change or update in the future.

Resolution:

  1. Download and install the program from http://www.ethereal.com
  2. Use the Capture menu to open the Capture Options form.
  3. Select your NIC and define a capture filter that will look for all packets sent to UDP port 514 (the default syslog port).
  4. Press the Start button and you should see packets being as in the image below.
  5. Stop the capture and view the data. It should show packets with the protocol being Syslog.

This program provides the ability to capture packets as they are sent to your Network Interface Card (NIC). By filtering for and analyzing this traffic, you will be able to determine if your network devices are actually sending the expected information to your system.
Last modified

Tags

Classifications

Public