Hello Computer Gladiator,
Greetings! Welcome to Microsoft Q&A Platform.
I understand that you would like to setup a syslog server to capture logs from a Barracuda WAF which is indeed possible. If you are running syslog on a UNIX machine, be sure to start the syslog daemon process with the “-r” option so it can receive messages from external sources or if you are running syslog on windows machine, it requires an external software.
Syslog server can collect, store, and manage log messages from various network devices and applications. To setup this, configure the Barracuda WAF and send its logs to the IP address and port of your syslog server, if there are any firewalls between the Barracuda Web Application Firewall and the configured export log servers, ensure that the respective port is open on the firewalls.
Here is the doc for your reference: https://campus.barracuda.com/product/loadbalanceradc/doc/21364919/how-to-configure-syslog-and-other-logs/, https://campus.barracuda.com/product/webapplicationfirewall/doc/4259935/how-to-export-logs-from-the-barracuda-web-application-firewall.
There are no special IPs for Syslog. It encrypts the traffic using TSL 1.2 to the standard public endpoints. Both the AMA and MMA agents share the same firewall requirements. https://learn.microsoft.com/en-us/azure/azure-monitor/agents/log-analytics-agent#firewall-requirements
Similar thread for reference - https://learn.microsoft.com/en-us/answers/questions/780462/logs-through-ama-agents
Hope this answer helps! please let us know if you have any further queries. I’m happy to assist you further.
Please "Accept the answer” and “up-vote” wherever the information provided helps you, this can be beneficial to other community members.