Trend Micro Apex Central™ is a web-based console that provides centralized management for Trend Micro products and services at the gateway, mail server, file server, and corporate desktop levels.
Does this information look incorrect or out-of-date? Please contact us at support@socos.io.
Log Forwarder can send several log types from the Apex Central database to a syslog server in either Common Event Format (CEF) or Apex Central format.
If SSL/TLS is selected, by default Apex Central accepts receiver's SSL certificate without validation.
For best security practice, upload CA certificate that issued receiver’s SSL certificate to enable SSL certificate validation.
If the receiver SSL certificate is a self-sign certificate, it must contains Subject and Subject Alternative Name, the CN Name and DNS Name must contain the Receiver host FQDN or IP address.
Apex Central only supports CA certificates in X.509 format with .DER or .PEM encoding
Apex Central only supports syslog forwarding over a SOCKS protocol proxy server for SSL/TLS or TCP transmissions.
Syslog forwarding does not support HTTP proxy servers. To use a proxy server for syslog forwarding, click Configure proxy settings and select a SOCKS protocol server on the Proxy Settings screen.
For more information, see Supported Log Types and Formats.
Select the log type(s) to forward:
a. Select a log category from the Log type dropdown list:
b. Select the check box(es) for the log(s) you want to forward. Apex Central displays the total number of selected log types next to the Log type dropdown list.
c. (Optional) Select another log category from Log type dropdown list to select additional logs types to forward.
Click Test Connection to test the server connection. The syslog server connection status will appear at the top of the screen.
Click Save.
Apex Central starts forwarding logs to the configured syslog server.
To monitor the log forwarding status, go to Administration > Command Tracking and select Forward Syslog from the Command drop-down list.