[graylog2] Feature request - SSL validator as an option

2016-07-25 Thread Grzybek Mathieu CNE (GAE BCQ STIG CTGN)

Dear all,

I have upgraded my platform to Graylog 2.0.3 and changed some 
configuration items and my reverse proxies to use both the web interface 
and the REST one.


As a consequence the web interface now uses a signed SSL certificate 
(https://graylog.example.com) and the webservices gateway does not 
(self-signed one, https://graylog-ws.example.com). Many error messages 
are now written in the server.log file:


WARN  [ProxiedResource] Unable to call 
https://***/system/metrics/multiple on node 
<9c0311bc-3d18-44bd-8011-2952926f0f7c>, caught exception: 
sun.security.validator.ValidatorException: PKIX path building failed: 
sun.security.provider.certpath.SunCertPathBuilderException: unable to 
find valid certification path to requested target (class 
javax.net.ssl.SSLHandshakeException)


Two ideas come to my mind :
1. beeing able to skip the certificate validation (bad idea...)
2. beeing able to give the certificate details to the Graylog node to 
pass the validation process


What do you think ?

Mathieu

--
Le capitaine Mathieu GRZYBEK
COMSOPGN / STIG / BCQ / GAE
Fort de Rosny
Avenue Théophile Sueur
93111 Rosny-sous-Bois Cedex
France
Tel: +33 (0) 158 665 225

--
Message envoyé grâce à OBM , la Communication Libre par 
Linagora 


--
You received this message because you are subscribed to the Google Groups "Graylog 
Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/5795DF4D.9060204%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.
Ce message électronique et tous les fichiers attachés qu'il contient sont 
confidentiels et destinés exclusivement à l'usage de la personne à laquelle ils 
sont adressés. Si vous avez reçu ce message par erreur, merci de le retourner à 
son émetteur. La publication, l'usage, la distribution, l'impression ou la 
copie non autorisée de ce message et des attachements qu'il contient sont 
strictement interdits.

En cas d'urgence, composez le 17 ou le 112.
Afin de contribuer au respect de l'environnement, merci de n'imprimer cet 
e-mail qu'en cas de necessite.

This e-mail and any files transmitted with it are confidential and intended 
solely for the use of the individual to whom it is addressed. If you have 
received this email in error please send it back to the person that sent it to 
you. Unauthorized publication, use, dissemination, forwarding, printing or 
copying of this email and its associated attachments is strictly prohibited.

In case of emergency, dial number 17 or 112.
To contribute to the environmental protection, please print this e-mail only if 
necessary. 

-- 
You received this message because you are subscribed to the Google Groups 
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/5795DF4D.9060204%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.


Re: [Internet] Re: [Internet] [graylog2] Cannot generate chart

2016-01-20 Thread Grzybek Mathieu CNE (GAE BCQ STIG CTGN)

Hi Jochen,

I guess that we should update the graylog-internal template. It that right ?

Mathieu

Le 20/01/2016 15:16, Jochen Schalanda a écrit :

Hi Jean-Luc,

take a look at the documentation links Edmundo posted in his reply:

  * https://www.elastic.co/guide/en/elasticsearch/reference/1.7/mapping.html
Â

  * 
https://www.elastic.co/guide/en/elasticsearch/reference/1.7/indices-get-field-mapping.html


  * 
https://www.elastic.co/guide/en/elasticsearch/reference/1.7/indices-templates.html


Cheers,
Jochen

On Wednesday, 20 January 2016 14:08:59 UTC+1, Jean-Luc Bassereau wrote:

Hello,

Should this value be "INTEGER" or something else ?
How can I change it ?

2016-01-19 14:45 GMT+01:00 Jean-Luc Bassereau:

Hello,

Thanks for your answer.
I'm running the last version of Graylog :
graylog-server-1.3.3-1.noarch
graylog-web-1.3.3-1.noarch

On a RHEL6 server.

This is what I can check about this field ES Mapping :
"NResults":{"type":"string","index":"not_analyzed"}


And I have nothing on logs (server and web interface).



Cheers.


2016-01-19 14:20 GMT+01:00 Edmundo Alvarez:

Hi Jean-Luc,

Which Graylog version are you running? Please share with
us any errors appearing in your Graylog server logs,
Graylog web interface logs and in your browser's console
while trying to add the graph, otherwise we can't know
what is wrong.

You could also check the Elasticsearch mappings as Mathieu
suggested, you can find more information about it:

https://www.elastic.co/guide/en/elasticsearch/reference/1.7/mapping.html



https://www.elastic.co/guide/en/elasticsearch/reference/1.7/indices-get-field-mapping.html



Regards,

Edmundo

--
You received this message because you are subscribed to the Google 
Groups "Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send 
an email to graylog2+unsubscr...@googlegroups.com 
.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/0b6ee908-d151-4894-b510-461bde34f2a6%40googlegroups.com 
.

For more options, visit https://groups.google.com/d/optout.


--
Le capitaine Mathieu GRZYBEK
COMSOPGN / STIG / BCQ / GAE
Fort de Rosny
Avenue Théophile Sueur
93111 Rosny-sous-Bois Cedex
France
Tel: +33 (0) 158 665 225

--
You received this message because you are subscribed to the Google Groups "Graylog 
Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569FBE41.3000402%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.
Ce message électronique et tous les fichiers attachés qu'il contient sont 
confidentiels et destinés exclusivement à l'usage de la personne à laquelle ils 
sont adressés. Si vous avez reçu ce message par erreur, merci de le retourner à 
son émetteur. La publication, l'usage, la distribution, l'impression ou la 
copie non autorisée de ce message et des attachements qu'il contient sont 
strictement interdits.

En cas d'urgence, composez le 17 ou le 112.
Afin de contribuer au respect de l'environnement, merci de n'imprimer cet 
e-mail qu'en cas de necessite.

This e-mail and any files transmitted with it are confidential and intended 
solely for the use of the individual to whom it is addressed. If you have 
received this email in error please send it back to the person that sent it to 
you. Unauthorized publication, use, dissemination, forwarding, printing or 
copying of this email and its associated attachments is strictly prohibited.

In case of emergency, dial number 17 or 112.
To contribute to the environmental protection, please print this e-mail only if 
necessary. 

-- 
You received this message because you are subscribed to the Google Groups 
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569FBE41.3000402%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.


[graylog2] Field type mismatch at index rotation

2016-01-19 Thread Grzybek Mathieu CNE (GAE BCQ STIG CTGN)

Hi everybody,

I have found a strange behaviour about field mapping. My HTTP access 
logs contain some numeric fields about page generation latency.


On index rotation, the type of these fields are not kept in the mapping 
of the new index. The two concerned fields, of types "double" and 
"long", become strings.


As a consequence, Graylog can no longer generate charts and statistics 
from these data. My current version is 1.3.2 running on Oracle JVM 1.8.0_31.


Does anyone have this problem ?

Mathieu

--
Le capitaine Mathieu GRZYBEK
COMSOPGN / STIG / BCQ / GAE
Fort de Rosny
Avenue Théophile Sueur
93111 Rosny-sous-Bois Cedex
France
Tel: +33 (0) 158 665 225

--
You received this message because you are subscribed to the Google Groups "Graylog 
Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569E17AA.5030704%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.
Ce message électronique et tous les fichiers attachés qu'il contient sont 
confidentiels et destinés exclusivement à l'usage de la personne à laquelle ils 
sont adressés. Si vous avez reçu ce message par erreur, merci de le retourner à 
son émetteur. La publication, l'usage, la distribution, l'impression ou la 
copie non autorisée de ce message et des attachements qu'il contient sont 
strictement interdits.

En cas d'urgence, composez le 17 ou le 112.
Afin de contribuer au respect de l'environnement, merci de n'imprimer cet 
e-mail qu'en cas de necessite.

This e-mail and any files transmitted with it are confidential and intended 
solely for the use of the individual to whom it is addressed. If you have 
received this email in error please send it back to the person that sent it to 
you. Unauthorized publication, use, dissemination, forwarding, printing or 
copying of this email and its associated attachments is strictly prohibited.

In case of emergency, dial number 17 or 112.
To contribute to the environmental protection, please print this e-mail only if 
necessary. 

-- 
You received this message because you are subscribed to the Google Groups 
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569E17AA.5030704%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.


Re: [Internet] [graylog2] Cannot generate chart

2016-01-19 Thread Grzybek Mathieu CNE (GAE BCQ STIG CTGN)

Hi Jean-Luc,

What about your field mapping in elasticsearch ? Is it a numeric type ?

Mathieu

Le 19/01/2016 12:00, Jean-Luc Bassereau a écrit :

Hello,

I'm trying to generate charts from numeric datas.
Field called "NBresults" contains numeric datas :


​
When I click on "Genchart" :

​
I have this endless animation without error but without result :

Any idea ?
​

--
Cheers,
Jean-Luc Bassereau
--
You received this message because you are subscribed to the Google 
Groups "Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send 
an email to graylog2+unsubscr...@googlegroups.com 
.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/CAEoVnxZRMD6ZdOtaC1g--e%3D%2BwxdqLGD%3DnHW5J1Oh1FLjDjd4hg%40mail.gmail.com 
.

For more options, visit https://groups.google.com/d/optout.


--
Le capitaine Mathieu GRZYBEK
COMSOPGN / STIG / BCQ / GAE
Fort de Rosny
Avenue Théophile Sueur
93111 Rosny-sous-Bois Cedex
France
Tel: +33 (0) 158 665 225

--
You received this message because you are subscribed to the Google Groups "Graylog 
Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569E187F.4030204%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.
Ce message électronique et tous les fichiers attachés qu'il contient sont 
confidentiels et destinés exclusivement à l'usage de la personne à laquelle ils 
sont adressés. Si vous avez reçu ce message par erreur, merci de le retourner à 
son émetteur. La publication, l'usage, la distribution, l'impression ou la 
copie non autorisée de ce message et des attachements qu'il contient sont 
strictement interdits.

En cas d'urgence, composez le 17 ou le 112.
Afin de contribuer au respect de l'environnement, merci de n'imprimer cet 
e-mail qu'en cas de necessite.

This e-mail and any files transmitted with it are confidential and intended 
solely for the use of the individual to whom it is addressed. If you have 
received this email in error please send it back to the person that sent it to 
you. Unauthorized publication, use, dissemination, forwarding, printing or 
copying of this email and its associated attachments is strictly prohibited.

In case of emergency, dial number 17 or 112.
To contribute to the environmental protection, please print this e-mail only if 
necessary. 

-- 
You received this message because you are subscribed to the Google Groups 
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/graylog2/569E187F.4030204%40gendarmerie.interieur.gouv.fr.
For more options, visit https://groups.google.com/d/optout.