ESXi hosts run the syslog service (vmsyslogd) that writes messages from system components to log files and can forward messages to syslog collectors.

You can configure the amount and location of the logs. You can also create and apply log filters to modify the logging policy of an ESXi host.

When configuring remote hosts for syslog, you also need to open some specified ports in the ESXi host firewall to allow the transmission of log messages. For more information, see Opening the firewall for syslog emission to remote hosts.