I have 2 PIX machines and I have configured the both of them to send logs to my syslogd. What I would like to know is how do I set up two different log files for each PIX machines? Cheers guys
You can use "syslog-ng" under linux. There, you can configure rules based on some fields (for example, the name reported by the pix) to send them to one file or another.
Alternatively, you can choose different locals for the two PIX and filter that on a legacy syslog daemon. But keep in mind that the number of local is limited.