1
answer

NxLog dependancies packages - how to build under centos 6.10

I am trying to build NxLog Comminity edition on Centos 6.10 w/ X64_86 target and found there are five dependencies packages - pr-util.x86_64 apr-util-devel.x86_64 pcre-devel.x86_64 openssl-devel.x86_64 perl-ExtUtils-Embed. Does anyone know where to download the source code for these 5 dependent packages and how to build under centos 6.10 environment?

Thanks.

AskedFebruary 7, 2019 - 7:03pm
0
answers

Mac OSX Kernel log collection parse_json error

I am trying to process the logs collected from MacOX kernel using the method described on page 251 of the guide, using /usr/bin/log.
I pretty much copied the entire code block, including xm_multiline and xm_json modules.
The problem I am running into is that parse_json throws an error for a very specific message and I don't understand what it doesn't like about it. It ONLY complains about this event, while successfully processing others. First the error:

AskedFebruary 6, 2019 - 6:12pm
1
answer

cond_timedwait

Hi,
I am monitoring few log file on a windows 2012 server using im_file
Send them to an ELK cluster

When checking the indexed logs we noticed delays ( 30 sec or more) for some ( not all)
The only clue I have found is a bunch of this type of error

2019-01-28 14:50:01 DEBUG future event, event thread sleeping 34361ms in cond_timedwait

Any idea what that means and how to troubleshoot it ??

Many thanks
Steven

AskedFebruary 5, 2019 - 1:37pm
1
answer

Questions about NXLog

So we have several systems/appliances that only send to one location. However, we have a need to send logs to more than one location the issue is that the logs are sent in LEEF format and one system uses LEEF and the other system uses CEF.

I know NXLog will do the multiple sending however, will it also convert the logs it is sending?

AskedFebruary 1, 2019 - 1:27pm

Pages