I'm implementing a centralized SYSLOG server on our network using Rsyslog and LogAnalyzer. The syslog server is already receiving the syslog messages from the network elements, including a TP-Link T1600G-28TS switch. The T1600G syslog message layout is different from the other elements, and the fields are in different order. Please see attached pictures. Any hints how to fix this? Thanks. Mauricio
SYSLOG message format - Allied Telesis switch: HOST field is OK
SYSLOG message from T1600G - HOST field contains "message date" instead of "hostname" and Syslogtag field contains the hour. Not the expected behavior.