> Source: [sk182258](https://support.checkpoint.com/results/sk/sk182258)

# sk182258 - Syslog fails to start on the Quantum Security Management Server

| Property | Value |
|----------|-------|
| Solution ID | sk182258 |
| Date Created | 2024-05-06 |
| Last Modified | 2024-07-30 |
| Technical Level | Advanced |
| Products | Security Management Server, Multi-Domain Security Management Server |
| Versions | R81.20, R81.10 (EOS), R81.10 (EOS), R81.20 |

## Symptoms

- * The Syslog process on the Security Management Server/Domain in a Multi-Domain Security Management Server fails to start.  

  If you try to start the Syslog service manually with the command:  

  `$FWDIR/bin/syslog 514 all &`  

  The output is:  

  `[1]+ Exit 1 $FWDIR/bin/syslog 514 all`
* The command `'netstat -anp'` does not show Syslog listening on port 514:

  `[Expert@Mgmt:0]# netstat -anp | grep syslog | grep 514`
* The file /var/log/messages show these logs:

  `[DATE TIME] Mgmt kernel: Kernel logging (proc) stopped.`  
  `
  [DATE TIME] Mgmt kernel: Kernel log daemon terminating.`  
  `
  [DATE TIME] Mgmt exiting on signal 15`  
  `
  [DATE TIME] Mgmt syslogd 1.4.1: restart.`  
  `
  [DATE TIME] Mgmt kernel: klogd 1.4.1, log source = /proc/kmsg started.`  
  `
  [DATE TIME] Mgmt syslogd 1.4.1: restart.`
* 'Accept syslog messages' is selected in the Security Management Server object in the SmartConsole \> Management object \> Logs \> Additional Logging \> Accept Syslog messages.

## Cause

A dictionary's INI filename is missing from the */var/$FWDIR/conf/syslog/CPdefined/CPdefinedSyslogDictionaries.C* file.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
