> Source: [sk174371](https://support.checkpoint.com/results/sk/sk174371)

# sk174371 - The format of system log that is sent to syslog server is changed

| Property | Value |
|----------|-------|
| Solution ID | sk174371 |
| Date Created | 2021-07-06 |
| Last Modified | 2021-07-08 |
| Technical Level | Advanced |
| Products | Security Management Server |
| Versions | R81.10 (EOS), R81 (EOS) |

## Symptoms

- The format of system log that is sent to the syslog server is changed from R80.20 onwards. The IP Address of the machine is replaced to the Hostname of the machine, as demonstrated below:

```

[R80.10]
[Date, Time] 192.168.1.1 xpand[5032]: admin localhost t +webuiparams:logincount:admin 9
[Date, Time] 192.168.1.1 xpand[5032]: Configuration changed from localhost by user admin
[Date, Time] 192.168.1.1 xpand[5032]: backup_live_get_proc: Unable to open status file
[Date, Time]192.168.1.1 xpand[5032]: failed to read status file

[R80.20/R80.30]
[Date, Time] HostName xpand[5393]: admin localhost t +webuiparams:logincount:admin 38
[Date, Time] HostName xpand[5393]: Configuration changed from localhost by user admin
```

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
