Configuring Advanced Settings

This option helps to configure fault tolerance on each configured TCP and TLS syslog server available. Fault tolerance is supported only for TCP and TLS syslog servers. UDP syslog servers cannot be configured for fault-tolerance. This functionality helps the syslog server to recover the logs lost during a disconnect. The administrator can configure fault-tolerance on syslog servers by enabling this option from the admin UI. Ivanti Policy Secure/Ivanti Connect Secure reads the lost pending logs during a disconnect from the log disk and transports them to the syslog server on a reconnect. Fault tolerance is supported only for the syslog servers configured under the following log-types:

  • Events
  • User Access
  • Admin Access

Fault tolerance is node-specific. In case of clusters, the setting needs to be enabled/disabled by logging into each of the cluster members.

To configure advance settings to a TCP and TLS syslog server:

  1. Select System > Log/Monitoring.
  2. Click the Advance Settings tab to display the configuration page.
  3. Complete the configuration as described in table.
  4. Save the configuration.

This feature is limited to configuring fault tolerance settings of an existing syslog server; and cannot be used to create or delete a new syslog server.

Settings

Guidelines

Syslog Server Fault Tolerance

Syslog Server

Lists the existing Syslog servers.

Type

Specifies if the Syslog server is a TLS or TCP type.

Fault Tolerance

Tolerates the loss of network connection to a TCP/TLS syslog server for a brief period (maximum of 4 hours) by sending the logs missed during the disconnect time. Click the checkbox to enable this option. Fault-tolerance is disabled by default on any syslog server.