Re: SysLog
Our default rule includes an action to log to a file. When configuring this action we use the 'AutoSplit' value to use the hostname as the log file name(C:\logs\hostslogs\%Hostname.txt). The hostlogs...
View ArticleSyslog of the Syslogger
I've poked around a bit, but haven't really found anything to answer my question. Then again, trying to phrase a search term to find the answer would be problematic given the product. I've had error...
View ArticleRe: Syslog of the Syslogger
We use a Schedule task that runs at a 1 minute interval to run a script that writes "Fields.GetDailyStatistics()" to a file. We also set our high message count to double our daily average. Even with...
View ArticleSuperflorus Characters In Messaging
My syslogging is working but I am getting unwanted data included as follows: 10-03-2016 17:33:33 Local7.Error 172.16.1.17...
View ArticleRe: Superflorus Characters In Messaging
Are the syslogs being sent in the standard syslog format? Also what does a packet capture show?
View ArticleRe: Syslog of the Syslogger
Is there a chance you can either post or message me the script that you run? This sounds like a possible intermediate solution.
View ArticleRe: Syslog of the Syslogger
I posted it in the Content Exchange: Save DailyStats to a file . I had to remove a lot of other parts of the script that were only relevant to our workflow, please test before relying on it... Acy...
View ArticleRe: Superflorus Characters In Messaging
What is the standard syslog format? No packet captures as of yet. Hopefully, we will not have to do packet captures. I do not know what the captures would show.
View ArticleRe: Superflorus Characters In Messaging
Stephen when I say the standard syslog format, i mean as defined in RFC 3164: https://www.ietf.org/rfc/rfc3164.txt In the past I have seen abnormalities in some packets coming in. This can be cause...
View ArticleWhat things do you set alarms for?
I just installed the latest Licensed version of Kiwi Sys log. I have it collecting syslog messages from all my network devices (10 or so). What are some good alarms to set up to email me that would be...
View ArticleKiwi C: drive space
One of our Kiwi instances is running out of room on the C: drive. When I check for large files, I see two logs from uws.apphost.clr2.x86.trace.log, using up almost 30gb. I understand this is Ultidev...
View ArticleRe: What things do you set alarms for?
You have to ask yourself what do you need to be alerted for. You will want to set up E-mail action to notify you if specific syslogs come in. You want it so specific that you are not getting so many...
View Articlelogger client count?
Hi Folks,We have the Syslog server installed in our environment on (hopefully) all servers and therein lies the question. Is there any way to get an accounting/list of all systems reporting in to the...
View ArticleRe: logger client count?
A similar question was asked recently: SysLog bkyle suggested using a registry key to include more hosts in the daily report. This maxes out at 999 hosts so it doesn't work for us. Our default rule...
View ArticleRe: logger client count?
Thanks for the response. We have a small environment of about 60+ servers. I am trying to verify that I have installed the syslog agent on all Windows servers, as well as configured the Linux system...
View ArticleRe: SysLog
Building on what kstone said, when using the auto-split function, make sure you are not also using Log File Rotation.
View ArticleSys Log Configuation.
Dears, I have some questions here regarding the below: 1- log rotation2- log archiving3- Clean up. Please advise with a best practice configuration. currently we have a clean up action to delete logs...
View ArticleRe: Sys Log Configuation.
Log archiving will move the logs from one location to another and, optionally, zip them. We archive our zipped logs daily at midnight to another drive. These are stored then there are clean-up actions...
View ArticleRe: Sys Log Configuation.
Thank you kstone what do you mean by host logs and catchall logs, is not the same logs? for our environment the logs is like this "SyslogCatchAll-2016-10-17-010.200.018.025", so the IP address is...
View Article