Catch logging from Windows network drives issue

Hello everyone,

I would like to catch a log from windows network drives, but I cannot did it.

May I know it is supported by nxlog?  Would you please advise, thank you.


<Input filelogs>
    Module    im_file
    File    "\\\\\\test\*"
    SavePos TRUE
    ReadFromLast TRUE
    PollInterval 5
    Exec $Message = $raw_event;

AskedSeptember 15, 2016 - 5:52am

parse_json, GELF and date conversion


I'm using nxlog to parse a json file and transfer it to Graylog. When it transfer to Graylog the format of a timestamp is changed.

How can i prevent nxlog to change the timestamp format ?

Thanks in advance

AskedSeptember 13, 2016 - 5:53pm

Many IPs on input - How to avoid using if else chains?



I'm new with NXLOG and I don't know how to configure the nxlog.conf file when having many IP entries from UDP sources.


I heritated an implementation that has too many ef and else because the IPs sources. I have some errors and with all those if and elses is pretty difficult to correct the problem.

Then I was wondering if ther is a way to separate the entries to avoid using if else if if else if every where.

AskedSeptember 12, 2016 - 9:01pm

New Installation

I'm setting up a new server for the first time with Enterprise Edition. Where does NXLog keep its data and can I move it to a different partition?

AskedSeptember 12, 2016 - 6:27pm

Is there a way to do native failover

using om_tcp is there a way to define a sequence of destination IP's such that the list is used in sequence if 1st IP fails to complete 3-way handshake, and then re-check the 1st IP to see if it came back.

simple scenario, admin reboots dest IP #1, or the FW admin deletes a FW rule thus blocking IP #1, NXlog could recognize IP #1 is down and then send to IP #2 in the list.

in general, its a failover mechanism. can it be done?

AskedSeptember 8, 2016 - 6:35am