> For the complete documentation index, see [llms.txt](https://docs.blusapphire.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.blusapphire.io/log-forwarding/03_log-forwarding-guide/log-forward/symantec/symantec-av.md).

# SYMANTEC AV

## SYMANTEC AV&#x20;

To forward Symantec AV logs, make the following configuration:&#x20;

Log in to Symantec AV using web interface&#x20;

In the Console, click Admin.&#x20;

Click Servers.&#x20;

Click the local site or remote site that you want to export log data from.&#x20;

Click Configure External Logging. &#x20;

On the General tab, in the Update Frequency List box, select how often to send the log data.&#x20;

In the Master Logging Server list box, select the management server to send the logs to.&#x20;

If you use SQL Server and connect multiple management servers to the database, specify only one server as the Master Logging Server.&#x20;

Check Enable Transmission of Logs to a Syslog Server.&#x20;

Provide the following information:&#x20;

Syslog Server&#x20;

Type the IP Address of the “Log Collector”.&#x20;

Destination Port&#x20;

Select the protocol to use, and type the destination port that the Syslog server uses to listen for Syslog messages.&#x20;

Log Facility&#x20;

Type the number of the log facility that you want to use, or use the default 7&#x20;

On the Log Filter tab, check which logs to export.&#x20;

Click OK.&#x20;

##
