Ask questions. Get answers. Find technical product solutions from passionate experts in the NXLog community.

How to filter repetitive events
In case of DOS attack on a device, there would be a surge of logs in a very short time and all the events look simillar with change in one or two parameters source port/destination port/source ip/destination ip. In such case, can we filter such repeatitive logs in NXLOG agent? If yes, How to do that? I tried pm_norepeat but it didnt help. Any other alternate options?    

kdevmu created
Replies: 1
View post »
last updated