1
answer
closed

Nxlog service crashes when parsing eventlog

Hi

We are using version 2.9.1504 on Windows Server 2012 R2 to send out iis and eventlogs but on some servers the nxlog service keeps crashing and logs this in the eventlog

Support ticket opened onJune 13, 2016 - 3:59pm
4
answers
closed

ERROR Couldn't read next event, corrupted eventlog?; The data is invalid.

As soon as I start nxlog-ce, it writes the error in the title into its logfile and stops processing logs. Nxlog config I am using:

 

define ROOT C:\Program Files (x86)\nxlog

Moduledir %ROOT%\modules
CacheDir %ROOT%\data
Pidfile %ROOT%\data\nxlog.pid
SpoolDir %ROOT%\data
LogFile %ROOT%\data\nxlog.log

<Extension json>
    Module      xm_json
</Extension>

<Input eventlog>
    # Use 'im_mseventlog' for Windows XP and 2003
    Module      im_msvistalog
</Input>

Support ticket opened onMay 10, 2016 - 10:38am
2
answers
closed

nxlog community edition on windows10

I am a newbie to logstash and elasticsearch and I am setting up a test system using nxlog on my windows clients.  I have several windows 7 boxes that are successfully sending the eventlogs to the logstash server.  I am trying to setup a nxlog client on a windows 10 box and I keep getting an error from the nxlog service that the eventlog is corrupt.  I have confirmed I have the nxlog.conf file selected for the newer style event log. 

Support ticket opened onApril 22, 2016 - 8:43pm
2
answers
closed

om_elasticsearch support ES 2.x ?

Hello

Can nxlog team confirm of the om_elasticsearch module is compatible with ES 2.x ? I unserstand there was some API changes in ES that broke Flume for example. 

Thanks,
Scott

Support ticket opened onMarch 21, 2016 - 9:20am
1
answer
closed

im_msvistalog via RPC

The Enterprise edition reference manual mentions that "~~Event logs can be collected from remote servers over MS RPC (Note: Enterprise Edition only). " How is this configured in the NXlog.conf file?

Support ticket opened onMarch 9, 2016 - 12:45am

Pages