We are using nxlog to write all our event logs to syslog, but have a need for them to be formatted as CSV instead of the tab delimited it appears to be currently. Is anyone doing this currently and mind sharing their config, or know if a way to process this correctly?


AskedAugust 22, 2017 - 3:03pm

Answer (1)

CSV does not accomodate for all fields. If you only want specific ones that's fine.

Otherwise I'd recommend using JSON or KVP.

Comments (2)

  • 2WheelAddict's picture

    Yeah, personally I'd rather stick to the SNARE format we're already using, but a 3rd party is requiring CSV. Do you happen to have a conf file that demonstrates exporting Windows logs to CSV you could share?