Cisco Certified Support Technician (CCST) NetworkingIP ServicesMedium

A network technician is configuring a new router and wants to ensure that all generated log messages are sent to a remote Syslog server for centralized storage and analysis. Which UDP port must be opened on the Syslog server's firewall to receive these messages by default?

  1. A514
  2. B123
  3. C53
  4. D23
Show answer & explanation

Correct answer: A. 514

Syslog uses UDP port 514 as its default port for sending and receiving log messages. To allow a remote Syslog server to receive logs, this port must be open on its firewall.

Why the other options are wrong

  • B. Port 123 is used by NTP (Network Time Protocol).
  • C. Port 53 is used by DNS (Domain Name System).
  • D. Port 23 is used by Telnet, a remote access protocol.

Syslog Default Port

The standard UDP port number that Syslog uses for transmitting log messages over a network.

  • UDP Port 514 is the default.
  • Must be open on Syslog server firewall.
  • TCP can also be used, often on port 6514, but UDP 514 is most common.

Memory trick: 514 is the Syslog door, UDP's log-store.

More IP Services questions