[graylog2] Re: Nodes- Connection to machines

2016-04-13 Thread sikender . mohammad
Hi JOchen, I dont know what might be the reason But I cant able to access REST API. And one more thing is like, If i provide more nodes to server ad access graylog? What are the defects I will be facing ? For example; I have 10 environments, Can I access 5 environments in 1 node and other

[graylog2] Graylog collector

2016-04-13 Thread sikender . mohammad
HI all, I have some queries regarding graylog; Do we need root access to install graylog-collector in agent machine? 1) How can we handle different log names in graylog ? 2) Can I able to stream particular error messages into streaming CAn you please do reply me .. !! Thank you

[graylog2] web interface with v2.0 appears to require direct REST access?

2016-04-13 Thread Jason Haar
Hi there Under graylog-1.3.4 I had published graylog-web behind a WAF - which nicely mapped https://graylog.internet.domain to http://graylog.intranet.domain (notice the different domain names too) With v2.0 I can't get this to work. Now it appears graylog returns content with hardwired URLs

[graylog2] best way to do a "read only" audit account?

2016-04-13 Thread Jason Haar
Hi there I want to set up graylog (ldap auth) so that there's a group who have full READ access (audit team). ie instead of creating a Stream and giving them access to that, I want them to be able to access all the data - but not be admins. I have Roles working well for other groups - but this

[graylog2] Re: Copy field containing date as a new date field does not work

2016-04-13 Thread graylog2me
Update: new field is created but also as type string. On Wednesday, April 13, 2016 at 6:25:55 PM UTC+2, grayl...@gmx.de wrote: > > Unfortunately Graylog saves a field in ElasticSearch instead of date. > > Therefore I tried to copy the field in a new field as type date. > > I tried it that way

[graylog2] Re: Data type of @timestamp is sometimes string instead of date

2016-04-13 Thread graylog2me
Update: new field is created but also as type string. On Friday, April 8, 2016 at 3:53:44 PM UTC+2, grayl...@gmx.de wrote: > > Hello, > > We have a problem with the @timestamp field. Sometimes it is wrongly > created as string instead of date. > > We use the following pipeline: > > Docker --

[graylog2] Copy field containing date as a new date field does not work

2016-04-13 Thread graylog2me
Unfortunately Graylog saves a field in ElasticSearch instead of date. Therefore I tried to copy the field in a new field as type date. I tried it that way but without success. Can somebody help? Message: 2016-04-13T16:18:24.739Z Converter: Convert to date type Format string:

[graylog2] Re: Load Balancer health check with Big-IP F5

2016-04-13 Thread Micha -
Hi Martin, For tthis monitor you dont't need an external Monitor on the F5 Just Configure the monitor like one of that, and it should work AS HTTP/1.0 *Send String:* GET /system/lbstatus HTTP/1.0\r\n\r\n *Receive String:* Alive OR as HTTP/1.1 *Send String:* GET /system/lbstatus

[graylog2] Running graylog-collector as a service with Solaris 10/11

2016-04-13 Thread Marcella
Hi all, I want to run the graylog-collector as a service on a Solaris machine. I configured it as a SMF Service, it is running ok, but the status always shows "offline*" (which means starting). If I start it from the commandline it is running but the command is not coming back, when I try to

[graylog2] Re: Load Balancer health check with Big-IP F5

2016-04-13 Thread Jochen Schalanda
Hi Marty, the second CRLF is required by the HTTP/1.0 and HTTP/1.1 protocols, so it's not broken but simply as specified (see https://tools.ietf.org/html/rfc7230#section-3 for details). If you really want to use netcat for that stuff instead of a proper HTTP client like curl, you'll have

[graylog2] Re: Can I convert a field from string to integer?

2016-04-13 Thread Jochen Schalanda
Hi Ryan, Elasticsearch tries to be smart about the types of document fields if no explicit mapping was provided. In this case, it assumes that those fields are strings. Since this dynamic mapping is applied on a per-index base, rotating the index (see System -> Indices -> Maintenance in the

[graylog2] Re: Chart treats no sample as 0

2016-04-13 Thread Jochen Schalanda
Hi Paweł, please see https://github.com/Graylog2/graylog2-web-interface/issues/1621 for a related issue on GitHub and feel free to subscribe to it to follow its progress. Cheers, Jochen On Tuesday, 12 April 2016 19:10:39 UTC+2, Paweł Lampe wrote: > > Hi, > > I am using graylog v1.3.4, and I

[graylog2] Re: remote sites / servers

2016-04-13 Thread Jochen Schalanda
Hi Damien, Is there a secure way to send logs from these remote offices? > You can either create a VPN spanning those remote offices and your data center (or wherever Graylog is running) or use pretty much any log shipper supporting TLS (e. g. nxlog, filebeat/winlogbeat, rsyslog, or the