What type of input? Syslog? Raw? UDP/TCP? Which Graylog version? Thanks!
On Sat, Jan 31, 2015 at 3:30 PM, Rob Erix <[email protected]> wrote: > Hi. > > I would like to log syslog messages from my firewall. Messages are received > just fine. > Apparently because the first field in the message is "date=xxxxx", Graylog > defines the source as "date=xxxxx". > I set the option to override_source: Firewallname for my input in order to > get a consistant name but it does not do anything. > > Did I got the idea wrong here? > > Thank you in advance for help. > > BR. Rob. > > -- > You received this message because you are subscribed to the Google Groups > "graylog2" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to [email protected]. > For more options, visit https://groups.google.com/d/optout. -- You received this message because you are subscribed to the Google Groups "graylog2" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. For more options, visit https://groups.google.com/d/optout.
