Re: [graylog2] Re: Losgatsh Start

2016-02-11 Thread Marius Sturm
You can also try here: https://discuss.elastic.co/c/logstash On 11 February 2016 at 12:01, Shrawan Bhagwat wrote: > Hi Marius, > > I have joined that group, but I am unable to Post anything over there. :( > > Please help. > > Regards, > Shrawan > > On Thursday, 11

[graylog2] Re: Disabling logs from nginx.

2016-02-11 Thread Stephen Fox
I'd think you can create a drool rule to drop these messages. Similar to my situation: https://groups.google.com/forum/?hl=en#!topic/graylog2/tHWNGAi93Xk On Thursday, February 11, 2016 at 10:11:57 AM UTC-5, Michal Šturma wrote: > > Hi, > > is there any way how to turn off logs from "nginx"

[graylog2] Re: log source from database

2016-02-11 Thread Jochen Schalanda
Hi, I'll just quote my reply to this very similar question a few days ago ( https://groups.google.com/d/msg/graylog2/OuI7u5826vY/bfVZXxb9AAAJ): the Graylog Marketplace currently only offers a JDBC output plugin (which > also supports MySQL) and a simple script to periodically send the MySQL >

[graylog2] Graylog v2.0: Can't create graylog index in elasticsearch

2016-02-11 Thread Roland Hill
Hi list, Whilst I had migrated from 1.2.3 to 2.0, I experienced issues with logstash not being able to create an index. Long story short, I deleted all historical indexes (graylog and logstash) and "dropped" the graylog mongodb database. Yes this is drastic, but this is a home system so all

Re: [graylog2] Re: Losgatsh Start

2016-02-11 Thread Marius Sturm
Hi Shrawan, there is a dedicated Logstash google-group, maybe there are more folks hanging around who can help with your problem: https://groups.google.com/forum/#!forum/logstash-users Cheers, Marius On 11 February 2016 at 11:39, Shrawan Bhagwat wrote: > We are using

[graylog2] Re: Unable to run graylog-server after building from assembly:single

2016-02-11 Thread Jochen Schalanda
Hi, I cannot reproduce the problem with the incomplete artifact being built by the Maven Assembly plugin (which seems to cause the ClassNotFoundException). 2016-02-10 13:45:22,893 INFO : org.graylog2.plugin.system.NodeId - No node > ID file found. Generated:

[graylog2] sun solaris audtit logs send to graylog2

2016-02-11 Thread Shrawan Jha
Hi All, i want to forward sun solaris OS audit logs to graylog2 syslog server. can anyone help me on this topic. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an

Re: [graylog2] Re: Losgatsh Start

2016-02-11 Thread Shrawan Bhagwat
Hi Marius, I have joined that group, but I am unable to Post anything over there. :( Please help. Regards, Shrawan On Thursday, 11 February 2016 16:27:25 UTC+5:30, Marius Sturm wrote: > > Hi Shrawan, > there is a dedicated Logstash google-group, maybe there are more folks > hanging around who

[graylog2] Losgatsh Start

2016-02-11 Thread Shrawan Bhagwat
Hi All, We are getting the below mentioned error when we start logstash using ./logstastctrl start command Exception in thread "main" org.jruby.exceptions.RaiseException: (LoadError) Could not load FFI Provider: (NotImplementedError) FFI not available: null See

[graylog2] Re: Graylog v2.0: Can't create graylog index in elasticsearch

2016-02-11 Thread Jochen Schalanda
Hi Roland, the old index template being used by Graylog 1.x isn't compatible anymore with Elasticsearch 2.x. Just delete the old graylog-internal template (see https://www.elastic.co/guide/en/elasticsearch/reference/2.2/indices-templates.html#delete) and restart Graylog. The new template will

[graylog2] Collector Write Permissions

2016-02-11 Thread David Vokáč
Hello! I wanted to ask if there is a specific reason why graylog collector needs write permissions for log files. It should suffice to have read permissions since graylog should open files with -r only flag. Caused by: java.nio.file.AccessDeniedException is written to collector log everytime

[graylog2] Sending http mail alerts

2016-02-11 Thread Anant Sawant
Hi, Well I am working on graylog since last 6 months, basically the coding part. Now I have started working with the configuration part which requires installing plugins etc. Is it necesary to install postfix on the machine graylog is running in order to send mail alerts or it can be done

[graylog2] Re: sun solaris audtit logs send to graylog2

2016-02-11 Thread Jochen Schalanda
Hi Shrawan, according to https://docs.oracle.com/cd/E23824_01/html/821-1456/audittask-14.html#audittask-11 it is possible to send the audit logs to the local syslog daemon which in turn can send them to Graylog (which supports Syslog protocol). Cheers, Jochen On Thursday, 11 February 2016

[graylog2] Re: Dealing with rotating log files

2016-02-11 Thread Dennis Seaton
Good info, thanks Jochen -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...@googlegroups.com. To view this discussion on the web visit

Re: [graylog2] Disabling logs from nginx.

2016-02-11 Thread Marius Sturm
Hi Michal, the Nginx logs are ingested via the "appliance-gelf-udp" input. When you stop this one no logs should be stored. Cheers, Marius On 11 February 2016 at 16:11, Michal Šturma wrote: > Hi, > > is there any way how to turn off logs from "nginx" which contains logs >

[graylog2] Re: Whts the best way or Tool for monitoring apache logs by using Graylog

2016-02-11 Thread Arie
Ranjith, I wloud propose a imported setting on apache if it would be possible. By default it does not write processing time to the log file, but this is one of the most useful parameters on measuring and mainting your server. Is is about %T

[graylog2] Re: Journal filling in a short time

2016-02-11 Thread Arie
Hi, You couls reconfigure elasticsearch for a start: try changing this: index.refresh_interval: 5s Or even use a value of 30 sec, this improves the throuput of elastic. On centos6 /etc/sysconfig/elasticsearch ES_HEAP_SIZE=8g (/etc/init.d/elasticsearch) < set it to 50% of your

[graylog2] Issue installing Graylog collectory 0.4.2 on Windows 2012R2

2016-02-11 Thread Bill Tunney
I'm trying to install the collector on a server 2012R2 vm, and not having much luck. Following the collector doc on doc.graylog.org pertaining to windows. 1. installed 1.8.0_73x64 JDK 2. set JAVA_HOME system variable 3. open cmd as Admin and switched to the collector directory 4.

[graylog2] Re: Issue installing Graylog collectory 0.4.2 on Windows 2012R2

2016-02-11 Thread Bill Tunney
Nvm, please disregard. Apparently my proofreading skill needs leveling. On Thursday, February 11, 2016 at 2:28:42 PM UTC-7, Bill Tunney wrote: > > I'm trying to install the collector on a server 2012R2 vm, and not having > much luck. > > Following the collector doc on doc.graylog.org

Re: [graylog2] Re: Graylog v2.0: Can't create graylog index in elasticsearch

2016-02-11 Thread Roland Hill
Hi Jochen, Thank you for your excellent accurate advice again. I'm back up and running. -- Regards, Roland On Thu, Feb 11, 2016 at 11:49 PM, Jochen Schalanda wrote: > Hi Roland, > > the old index template being used by Graylog 1.x isn't compatible anymore > with