noob question regarding queries

hi, i try to use special event ids to with graylog but its not working. service is running, so imho it could not be a syntax error in the config.my query looks like

AskedOctober 13, 2017 - 10:04am

How to convert ip4addr to string

the following context is my Input configuration and i get a functong from the manual doc,  but the return value of hos_ip() is ip4addr, and I want to convert the return value to string, I have try the string() function, but it does not work at all. Is there any way to convert the return value to string so i can and a new filed of the Input configuration.

ip4addr host_ip();
description Return the first non-loopback IP address the hostname resolves to.
return type ip4addr

AskedOctober 12, 2017 - 1:10pm

NXLog and ODBC

Hi ,

Trying to create an ODBC connect for NXLog to connect to.   NXLog is installed on the same Windows 2012 server as the SQL Server 2008R2 instance.


Scenario 1:

32-bit ODBC is setup as a System DSN with a SQL Server account that has DBO access to the desired database

NXLog service is setup to run under the System account.   


- I've tried both drivers available on the system ("SQL Server Native Client 10.0"  and "SQL Server")

AskedOctober 11, 2017 - 9:54pm

High CPU load on Windows 7


I noticed strange cases nxlog.exe is loading 60%-90% CPU.
Log file has nothings about errors.
I have the same config file for win7 and winXP, but winXP is OK in contrast to win7.
Also if I use om_udp module instead om_tcp in config file for win7 high load is desappear.  

Could anybody say me what is the problem, or how I can get more information about cause of problems.

AskedOctober 11, 2017 - 3:33pm

Get gmt time with IETFTimestampInGMT


I have a question about IETFTimestampInGMT option.

In the documentation - section "Syslog (xm_syslog)" - I can read : "IETFTimestampInGMT This optional boolean directive can be used to format the timestamps produced by to_syslog_ietf() in GMT instead of local time. This defaults to FALSE so that local time is used by default with a timezone indicator"

So here's a part of my nxlog.conf :

<Extension _syslog>

    Module  xm_syslog

AskedOctober 10, 2017 - 3:38pm