I'm trying to get osquery use the syslog `--logger...
# general
l
I'm trying to get osquery use the syslog
--logger_plugin
to send syslog to a remote loghost on OS X... Cannot get it working. Is anyone successfully doing that?
s
Not directly. Osquery’s syslog logger plugin sends to the local syslog daemon. If you you want to send to a remote syslog you’d could configure the the syslog to send remotely.