The standard default time frame for searches and streams is the last 5
minutes.
Using Graylog 2.0.2-1 I tried removing the minute and hour searches under
System - Configurations - Search Configuration so that the first in the the
list was P1D - Search in the last 1 day.
When returning to the
I used this format to convert existing keys, seems to work ok.
openssl pkcs8 -nocrypt -topk8 -in /etc/pki/tls/private/graylog-server.key
-out /etc/pki/tls/private/graylog-server.pk8
On Wednesday, April 13, 2016 at 4:13:15 AM UTC+10, Drew Miranda wrote:
>
> Any quick tips on the command to use
Just having an issue extracting the date from a JSON log message.
The JSON extractor works fine separating all the fields, but the date is in
an incompatible format:
timestamp: 2016 Mar 2016 16:55:43
Is there some way of configuring a custom date format for this?
--
You received this message
I'm trying to get a reverse nginx proxy working for Graylog v2.0-alpha.3 to
access Graylog externally.
The Nginx settings are as follows:
Server
{
listen 80;
server_name example.com;
location /api
{
proxy_set_headerX-Forwarded-For $proxy_add_x_forwarded_for;
I have looked through the documentation but cannot find a way of installing
the graylog-ctl and associated scripts that are included with the virtual
appliance releases.
Is there some way of doing this rather than copying off the OVA when doing
a manual install?
--
You received this message
In comparison to the nxlog to logstash model, is it possible to suppress
events that are not required?
An example in nxlog would be:
Module im_msvistalog
Query\
\
*\
*[System[(EventID=4624 or EventID=4776 or
EventID=4634 or EventID=4672 or