Our IBM system is reformatting security, database and other event log sources on the system into SYSLOG Key Value Pairs over TCP... then forwarding the events to SolarWinds SEM, but we cannot see these logs on SolarWinds. We also send the IBM logs in CEF format, but in either case, I believe the SolarWinds Device configuration option would make the most sense, since the IBM systems are handling the sending part and not acting as an Agent. Or perhaps performing work of a SYSLOG node. What is the recommended way to configure these logs sources on our IBM system.