Logging detected rogue access points to syslog?

  • 1
  • Question
  • Updated 4 years ago
  • Answered
Hi all,

Is there any way to have the APs (or HiveManager) log rogue access points to syslog?

Thanks
Derek
Photo of Derek

Derek

  • 1 Post
  • 0 Reply Likes

Posted 4 years ago

  • 1
Photo of Brian Ambler

Brian Ambler

  • 245 Posts
  • 126 Reply Likes
Hi Derek,

If you set up syslog on your devices inside your network policy for notification or informational level logging you should see IDP messages letting you know when a rouge AP has been detected.

Creating the syslog option:


Then I just set up a simple filter inside a syslog app for "IDP: AP", rebooted one of my APs and saw that I was indeed catching the rouge APs that were detected upon boot:


Hope this helps