I'm receiving messages on a rsyslog machine, coming from a Windows 2008 machine using Snare.
The problem with 2008 is that at the end of the message comes a meaningless string explaining what the event is about. The string is really big and is the same for every event of the same type. Is there any way to make rsyslog discard this part of the message, most of the time it starts with "This event is generated". _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com/professional-services/ What's up with rsyslog? Follow https://twitter.com/rgerhards

