Hi Leon, some network appliances don't send actually valid syslog messages, although their manufacturers claim they do. This might be one of those cases.
Please check, if the messages are indexed if you're using a Raw UDP/TCP input in Graylog. You'd have to extract the interesting fields with some custom extractors (or use the ones we offer at https://www.graylog.org/resource/extractor/53a46560e4b0b8f13c3d2cf4/). Cheers, Jochen On Wednesday, 29 July 2015 16:01:22 UTC+2, Leon Hedding wrote: > > I have setup my Juniper to send data in via syslog to my graylog server > 1.1.5. I am seeing the data arrive via tcpdump on the destination server, > but it is not ingested into graylog. I am using that same port to ingest > other syslog data with no issues. Where should I look next for > troubleshooting this? > > Cheers, > > Leon > -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/graylog2/10c6b57c-045d-4f8a-a98d-2135722ff007%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
