Ask questions. Get answers. Find technical product solutions from passionate experts in the NXLog community.
How to filter repetitive events
kdevmu created
In case of DOS attack on a device, there would be a surge of logs in a very short time and all the events look simillar with change in one or two parameters source port/destination port/source ip/destination ip. In such case, can we filter such repeatitive logs in NXLOG agent? If yes, How to do that? I tried pm_norepeat but it didnt help. Any other alternate options?
kdevmu created