Splunk / Proxmox / UNifi / VM ?

ThierryIT69

New Member
Mar 28, 2024
14
3
3
Hello,
I would like my router/firewall Unifi UDM-SE send his logs to my VM (splunk+ubuntu server).
What I have done:

- on the proxmox VM no FW (during the test)
- on my VM I have two NICs, one for the management (network 205) and one for the remote logging location (splunk - network 203 -same as my udm network).
- on my VM, ufw is running, I have opened port 9997 and port 514 .
- on my UDM SE, I have forwarded the syslog to my remote splunk server (network 203).

On the Splunk server, port 514 and 9997 are listening.


Until now, no logs appear on my Splunk.
How "ufw" is dealing when running two different networks ?

Ideas ?
 
Last edited:

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!