How to Append (concatenate) additional data on the end of syslog messages?

How would I change the syslog event message on an output module so that every message gets an additional field?  I want to add another value called "Project X" after the message portion of all syslogs events/messages as they are forwarded to another server?  Would I use $raw_event as I show in my example? 

Current config:

<Output out>

   Module om_udp


   Port 514



Would I do this?

AskedJune 6, 2016 - 8:13pm

om_http authentication?

I am sending data to Elasticsearch via port 9200 and I am also using security for Elasticsearch. Any access to the rest API requiries authentication.

Is there a way to configure the om_http output to provide headers to authenticate when sending data to Elasticsearch?

Thank you

AskedJune 6, 2016 - 6:46pm

ASSERTION FAILED nx_module_output_fill_buffer

What this error means that leads some output modules to stop sending logs without crashing?


ASSERTION FAILED at line 21 in writerfuncs.c/nx_module_output_fill_buffer(): "output->buflen == 0" 

AskedJune 6, 2016 - 4:10pm

Windows eventlog transfert

HI all, I am trying to transfer Windows eventlog (Securty, Application and System) from a server A to a server B. It is almost working if I send all the events of server A in a flat file on server B.
But my goal is a little bit different : I need to have the serverA-Events loggued in the eventviewer of the server B.
Do yo know if it is possible to achieve this ?
Thanks in advance !

AskedJune 6, 2016 - 1:14pm

NXLog for Performance Monitoring

There is a tone of infrastructure and application monitoring tools out there ( uberagent, vmturbo etc., powershell scirpts) to collect proccess details as their main task.

Allthough some could be integrated with NXLog ( lets say by using im_exec, or xm_exec) they have limited  filtering and output  capabilities compared to NXLog.

AskedJune 6, 2016 - 7:56am