Hi Nyanjau, could you please post the configuration of your Syslog input in Graylog (System -> Inputs -> [the contents of the gray field]) and of your rsyslog daemon?
And just to clarify: You're sending the logs of some network appliances (routers) to rsyslog which in turn sends those to Graylog? Cheers, Jochen On Wednesday, 18 November 2015 07:17:37 UTC+1, Nyanjau Kimani wrote: > > Hi Guys, > > I am running latest graylog v1.2.2, with graylog web 1.2.2 and > elasticsearch 1.7. I use rsyslog to send log information to graylog server. > I am receiving logs from the routers on my graylog inputs, but they are > displayed with the IP address and not the hostname. My routers have both A > and PTR records. I have tried the to add the PreserverFQDN command on the > rysylog server config file without achieving desired effect. > > Anyone who has successfully logged router and switch logs with graylog > 1.2.2 without having to use logstash to format the logs? > > Thanks. > > > Regards, > > Nyanjau. > -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/graylog2/b8957bab-6a5a-4197-a2f3-9389091a76ce%40googlegroups.com. For more options, visit https://groups.google.com/d/optout.
