Logs contain unstructured data that can be analyzed in Log Insight. ESXi hosts or vCenter Server Appliance instances can push their logs to Log Insight through syslog.

You must configure the ESXi hosts or vCenter Server Appliance instances to push their syslog data to Log Insight.

You use the Administration user interface of Log Insight to configure ESXi hosts on a registered vCenter Server to forward syslog feeds to Log Insight.


Running parallel configuration tasks might result in incorrect syslog settings on the target ESXi hosts. Verify that no other administrator user is configuring the ESXi hosts that you intent to configure.

For information on configuring syslog feeds from a vCenter Server Appliance, see Configure a vCenter Server Appliance to Forward Log Events to Log Insight.


Log Insight can receive syslog data from ESXi host versions 4.x and later.

Verify that the vCenter Server that manages the ESXi host is registered with your Log Insight instance.

Verify that you have user credentials with enough privileges to configure syslog on ESXi hosts.

Host.Configuration.Advanced settings

Host.Configuration.Security profile and firewall


You must configure the permission on the top-level folder within the vCenter Server inventory, and verify that the Propagate to children check box is selected.


Click the configuration drop-down menu icon and select Administration.


Under Integration, click vSphere.


Locate the vCenter Server instance that manages the ESXi host from which you want to receive syslog feeds.


Select the Configure ESXi hosts to send logs to Log Insight check box.

By default, Log Insight configures all reachable ESXi hosts of version 4.x and later to send their logs via UDP . ESX hosts are not supported.


While ESXi 5.x hosts can have multiple syslog targets, ESXi 4.x hosts can have only one target. By default, Log Insight overwrites and replaces any existingESXi 4.x syslog targets.


(Optional) To select which ESXi hosts forward their logs to Log Insight, which protocol is used for forwarding logs to Log Insight, and how to handle syslog configuration on ESXi 4.x hosts, click Advanced Options.


Click Save.