Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?


stream (Logical Systems and Tenant Systems)


Hierarchy Level


Define security log stream options for a logical and tenant system. When the logging mode is set to stream, security logs generated in the data plane are streamed out a revenue traffic port directly to a remote server. All the categories can be configured for sending specific category logs to different log servers for stream mode log forwarding.



Type of logged events.

  • Values:

    • aamw—AAMW events are logged.

    • alg—Alg events are logged.

    • all—All events are logged.

    • appqos—Appqos events are logged.

    • content-security—Content security events are logged.

    • flow—Flow events are logged.

    • fw-auth—Fw-auth events are logged.

    • gtp—Gtp events are logged.

    • idp—Idp events are logged.

    • ipsec—Ipsec events are logged.

    • nat—Nat events are logged.

    • pst-ds-lite—Pst-ds-lite events are logged.

    • rtlog—Rtlog events are logged.

    • screen—Screen events are logged.

    • sctp—Sctp events are logged.

    • secintel—Secintel events are logged.


Selects the filter to filter the logs to be logged.

  • Values:

    • threat-attack — Threat attack security events are logged.


Destination to send security logs.

  • ip-address—Specify IP address of the host.

  • port port-number—Specify host port number.

  • routing-instance routing-instance—Specify the routing instance.


Rate-limit for security logs.

  • Range: 1 through 65535

  • Default: 65535

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.

Release Information

Statement introduced in Junos OS Release 18.2R1 for logical Systems.

Statement introduced in Junos OS Release 18.3R1.

The routing-instance option introduced in Junos OS Release 18.3R1 for tenant systems.