1
answer
new

Question about im_msvistalog module

Hi all,

Just one question, is it possible to retrieve the IP address of a host which execute nxlog with msvistalog module ?

I know it's possible with module im_udp and $MessageSourceAddress.

 

Thanks

Support ticket opened onSeptember 14, 2017 - 7:49am
3
answers
new

GELF_TCP Invalid Timestamp (String)

Since the newest Graylog release 2.3, the restrictions of the GELF codec have been enforced harder and will now alert when the "timestamp" field is not an integer (initially a full exception was raised, now just a warning).

I have a GELF output type going to graylog, and the timestamp is coming in as a string somehow.

 

From the source of the community edition, it does seem like the field should be an integer, not sure where it is getting turned into a string.

Support ticket opened onAugust 16, 2017 - 4:29pm
1
answer
new

nxlog + graylog + evtx file (Netapp)

Dear support ,

i am trying to monitor my netapp cifs audit .

What i have:

1. the share to netapp file audit_cifs_svm_last.evtx

2. Graylog last version

3. nxlog enterprise evaluation
There is any options to monitor the evtx file and drop it to graylog with non gibberish characters in the messages - see below

 

Thanks

Support ticket opened onAugust 9, 2017 - 1:56pm
8
answers
active

Error 1401. System error 87. When trying install under win32process

MSI (s) (E4:9C) [19:13:39:684]: Product: NXLog-CE -- Error 1401. Could not create key: S-1-5-21-1688939787-1905098679-239004068-17022\Software\Microsoft.  System error 87.  Verify that you have sufficient access to that key, or contact your support personnel.

Error 1401. Could not create key: S-1-5-21-1688939787-1905098679-239004068-17022\Software\Microsoft.  System error 87.  Verify that you have sufficient access to that key, or contact your support personnel.

when using this method as part of a script...

Support ticket opened onMarch 29, 2017 - 6:35pm
9
answers
active

MSSQL Datetime field overflow

We are evaluating NXLog as log forwarder from Windows to Linux. In addition, we want to NXLog to extract logs from tables in MS SQL Server. It looks promising and we plan to buy NXLog Enterprise if we can solve this issue regarding time conversion.

I've setup a new test table in MS SQL Server 2016 and use nxlog to supervise the table. I get a similar error as before. I also posted my issue on the email list for Community Edition. Do you have any solution?

I've attached DB Schema, table content and nxlog.conf.

Error code when I enter the last row 'erik':

Support ticket opened onMarch 9, 2017 - 10:58am

Pages