I have been asked to setup a centralized syslog server so am reaching out to see if anyone has any recommendations, or 'avoid at all costs' advice.
I envisage setting up in Azure so we only have one to cover every single site.
It needs to properly decipher the Meraki logs to identify the originating MX.
How do I get the events from the Security Centre sent to syslog?
The aim is to retain 6months of logs from the MX Event log and IDS.
Any hints n tips would be most welcome too.
TIA