1
answer

Unable to get multiline working

Hi guys!
I really someone can help because I think I have tested all the things I could think of to make it work...

Ok, so we have those logs:

AskedOctober 11, 2018 - 8:05pm
1
answer

xm_multiline module for Oracle alert.log on AIX System

Hello,

I would like to obtain information in alert.log multiple lines for an event but without success. Below, my configuration :

<Extension multiline>
        Module       xm_multiline
        HeaderLine   /^\w\w\w\s\w\w\w\s\d\d\s\d\d:\d\d:\d\d\s\d\d\d\d/
</Extension>

<Extension syslog>
        Module  xm_syslog
</Extension>

AskedJune 8, 2016 - 11:38am
1
answer

Multiline Headerline Regex Error

I am trying to use the multlog module in order to start ingesting a custom log:

I have the following regex: \^(\d{2}|\d).(\d{2}|\d).(\d{4})\s(\d\d|\d):(\d\d|\d):(\d\d|\d)\s(AM|PM).\[(.*)\](.*)

This works in a regex test; however I cannot get it to work with the log file that looks something like this

9/10/2015 11:29:16 AM [0-3-1-SecondaryPortStatus.cs-17] GetStatus for IP: 192.168.0.231 on port: 5016

AskedSeptember 15, 2015 - 4:12pm