How to send syslog logs over site to site VPN?

Zyxel_Emily
Zyxel_Emily Posts: 1,451 image  Guru Member
Zyxel Certified Network Administrator - Security Zyxel Certified Sales Associate 100 Answers 1000 Comments

This example illustrates how to send logs of USG FLEX 100H to the syslog server over route-based VPN.

Topology:
USG FLEX 100H----VPN----USG FLEX 500H(ge3: 192.168.97.1/24)------syslog server(192.168.97.33)

Steps:

  1. Use wizard to configure route-based VPN on both USG FLEX H firewalls.
  2. Ensure the VTI (Virtual Tunnel Interface) IP addresses are configured within the same subnet on both devices. No additional policy route is necessary if the static routes are correctly generated by the VPN wizard. image.png image.png
  3. Configure Log Category Setting and Remote Syslog Server on USG FLEX 100H. image.png
image.png

Result:
Check if logs are sent to the syslog server located on the remote site of VPN. You can also capture packets on the syslog server to check the result.

image.png
Tagged: