Re: Problem with Log to file action
Jack, Please post a screenshot of your filter settings.
View ArticleRe: Problem with Log to file action
Here is the filter: Here is the message that should be getting filtered:
View ArticleRe: sys log server errors "FormatMessage failed with 1815" help please!!
its on a 2012 R2 and yes US english
View ArticleRe: 'How much traffic can Kiwi Syslog Server handle?'
hi 1.Load balance with F5 How to load-balance Kiwi Syslog servers 2.There are linux base syslog that can handle much more https://www.balabit.com/network-security/syslog-ng 3. Optimize what is send...
View ArticleRe: 'How much traffic can Kiwi Syslog Server handle?'
Hi en zed, If you don't want to worry about managing the hardware or tuning the software, Papertrail is a possible solution for you. Papertrail SolarWinds SaaS-based syslog server product. It may meet...
View ArticleKiwi Syslog server connection issue with FreeNAS
Hello all, I was wondering if you had any tips for connecting my FreeNAS to the Kiwi Syslog server I have in place? I have the IP address of the Windows server entered in properly and still have 514 as...
View ArticleRe: Kiwi Syslog server connection issue with FreeNAS
I have FreeNAS and was able to set the IP and the messages came streaming into Kiwi Syslog without issues. If you are using the Free Version, make sure to go under Setup>Inputs and add the IP the...
View ArticleRe: Display original source of message when logs are aggregated through...
I don't think that it's just displaying the wrong origin, I think it's discarding the origin. Our intention is to use rsyslog to collect at remote sites and then forward to kiwi & logstash, but I...
View ArticleRe: 'How much traffic can Kiwi Syslog Server handle?'
thanks for the suggestion.. we can't filter by severity because the messages we want for audit purposes are all the same severity..
View ArticleRe: 'How much traffic can Kiwi Syslog Server handle?'
hi sja,.. thanks for the suggestions 1. we have two pairs of kiwi setup behind a load balancer but it is more for failover instead of actual balancing... 2. linux.. yes.. we currently have this single...
View ArticleRe: 'How much traffic can Kiwi Syslog Server handle?'
we've looked out SAAS before and I love not needing to worry about the infrastructure... we haven't looked at papertrail.. I don't think this will fly $$ wise cos we are seeing ~25Gb per day just from...
View ArticleRe: Display original source of message when logs are aggregated through...
According to support, the only way this happens is to parse them into log files. Since our purpose was to forward to Orion from Kiwi and we want aggregate then forward to a central server, that is not...
View ArticleSome messages show up in Wireshark, but are not captured by Kiwi Syslog
Hello, I am testing Kiwi Syslog Server 9.5.0.332 with Kiwi Syslog Gen 2.2.0; both are running on separate computers. On the computer running Kiwi Syslog Server, I am also running Wireshark 1.12.3. I...
View ArticleRe: Problem with Log to file action
It appears that Kiwi has stopped all forwarding/logging to file actions. I have a Send Syslog Message action that also stopped working. Tried re-installing and noticed that the old actions were...
View ArticleDiscarding Traps in Kiwi
I'm setting up Kiwi and I'd like to specify certain traps to discard. The problem is my rule is't working. Can anyone see why? Screenshots below show the rule called "Discard rule," the filter which is...
View ArticleRe: Problem with Log to file action
Interestingly enough, after reinstalling and recreating the rules, everything started working!
View ArticleRe: Problem with Log to file action
Thanks for the update. This could have been due to an issue resolved by on of the Hot fixes.
View ArticleRe: Discarding Traps in Kiwi
If you are looking to exclude certain text from the actions in the rule, I would recommend using a complex message text filter with the exclude option:The stop processing message action keeps the...
View ArticleRe: Some messages show up in Wireshark, but are not captured by Kiwi Syslog
Ken, I would start by disabling the Windows UAC, and any antivirus software on the Kiwi Syslog system. We can see the syslogs at a packet level. This could be an issue where the syslogs are not...
View ArticleRe: Some messages show up in Wireshark, but are not captured by Kiwi Syslog
The symptoms seem to be point to Windows Firewall being on. Have you checked your Windows Firewall status?
View Article