Changing the syslog UDP port configuration file
It is generally never necessary to change the UDP port or syslog configuration. This is because all the information of interest is occurring at this port, and most syslog message generators do not give users the option of changing the port.
If it becomes absolutely necessary to change the port number, you can hand edit the BMC Defender Server/system/Syslog.cnf file that contains the UDP port (and might contain other directives, not documented here.) You can stop the CO-Syslog.exe process by stopping the BMC Defender Server service, and then edit the configuration file and restart the service. The file is read-only during CO-Syslog.exe program startup.
Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*