Forum Discussion
Hi Jamie,
Your problem is due to HSL Protocol. You have a size limit you can't exced 1024 bytes using UDP protocol (I already had the same problem using ASM logs)
You have to modify your "HSL Protocol" in your Request login profile: from UDP to TCP.
Important: The increased size limits apply only to messages sent to remote syslog server using an iRule and egressing a TMM interface. Messages sent to a remote syslog server directly from syslog will continue to be limited to 1024 bytes.
https://support.f5.com/csp/article/K8306?sr=36922430
For Info:
in the syslog protocol RFC Syslog have a 1KB message limit. This, and other deficiencies in the syslog protocol, is the reason why modern syslog daemons such as rsyslog support enhanced protocols with features such as TCP transport, encryption etc. There was also some effort within the IETF to standardize an improved syslog protocol, which resulted in RFC5424, RFC5425, and RFC 5426. Here, the minimum maximum message size is relatively small (depending on the transport layer), however implementations are allowed to support larger messages as well.
https://tools.ietf.org/html/rfc3164
Keep me in touch
regards