[graylog2] anyone written a nessus parser for GELF?

2016-03-01 Thread Jason Haar
Hi there We use nessus for vulnerability scans and I'd like to import the nessus reports into graylog so that I can better cross-correlate events involving internal hosts I can see others in the ELK camp have done this, but can't find any evidence of anyone doing it for graylog? Has someone

[graylog2] GrayLog collector

2016-03-01 Thread Warriors
Can we collect the weblogic logs and fwd to graylog server with pout installing Graylog collector on the client machine? -- DISCLAIMER: This message, including any attachments, contains confidential information intended for a specific individual and purpose, and is protected by law. If you

[graylog2] Re: Aging older data to slow nodes

2016-03-01 Thread Mike Daoust
which of the multiple time/date stamps does curator use when determining how old an index is? Doesnt seems to be documented in an easy to find place. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop

[graylog2] [Indicies retention]

2016-03-01 Thread kaiser
Hello, I have reach my indices retention number:20 I have now a new indice. What I see is that the oldest indice one is reopened. Why is it reopened? How many time does it take to delete the oldest indice? Regards. -- You received this message because you are subscribed to the Google

[graylog2] Re: Best way for Squid Log

2016-03-01 Thread Matthieu Simon
OK I think that Drools will be the best way but I'm so newbie :-/ I could add a field with value if message come from Squid but I can't modifit value if domain is in my list :-/ Any body who know drools have an idea to do that please ? Thank you Le lundi 29 février 2016 18:22:16 UTC+1, Matthieu

[graylog2] Using Graylog to find and display interesting logs

2016-03-01 Thread james . cort
Hi, I'm looking to use Graylog 1.3 to find and display potential error states across our Windows server estate. The technique I had hoped to use is "throw out all logs that are evidence of normal behaviour; everything that remains must be interesting". Initial attempts at this suggest it

[graylog2] Re: gibberish Messages from windows client- Why ?

2016-03-01 Thread batchenr
well i fixed it - set my computer region at control panl to English rather then my lango.. On Sunday, February 28, 2016 at 10:25:01 AM UTC+2, batc...@rboptions.com wrote: > > Hello, > > i have gray log that works with Linux servers just fine but as i added Win > Computer all the messages it

[graylog2] Re: Graylog 1.3 missing full_message

2016-03-01 Thread Łukasz Sokolik
Hi, Thanks for help, ShortMessageLength fix problem. It was related with nxlog 2.9.1504 send GELF version 1.1, full_message is empty. Old nxlog 2.8.1248 send GELF in version 1.0 and full_message works. I focused on finding how to change GELF version, not change message truncate ;) Setting as