[graylog2] Graylor-collector for Debian 7

2016-07-21 Thread Tony
Hello everybody, I would like to install in several production servers graylog-collector using puppet. The problem is I don't found anymore package for Debian 7 only Debian 8. Unfortunately I can't upgrade all production servers to Debian 8 for a while. Thanks in advance for your h

Re: [graylog2] Re: Graylor-collector for Debian 7

2016-07-22 Thread Tony
Thank you Jochen, very appreciate Cheers, Tony 2016-07-22 12:43 GMT+01:00 Jochen Schalanda : > Hi Tony, > > there currently aren't any DEB packages for the Graylog Collector working > on Debian 7. > > You can still download and install the official binaries from > h

[graylog2] graylog-collector-sidecar issue

2016-07-25 Thread Tony
tion found for configured tags! INFO[0030] [RequestConfiguration] No configuration found for configured tags! But I see the instance in collectors in graylog server. Any idea how to fix it? Thanks in advance Tony -- You received this message because you are subscribed to the Google Groups

Re: [graylog2] graylog-collector-sidecar issue

2016-07-25 Thread Tony
Thank you Marius, as I am very newbie on the system can you please, write me the correct GUI entries to configure it? Thanks a lot Tony 2016-07-25 15:46 GMT+01:00 Marius Sturm : > Hi Tony, > you have to create a configuration for the sidecar first. Go to 'Manage > configur

[graylog2] Re: Cannot Configure Collector Inputs

2016-07-26 Thread Tony
server using graylog-collector-sidecar but in the Graylog server I don't find the Collector choice in System menu. Any ida to help me please? Thanks Tony -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this

Re: [graylog2] Re: Cannot Configure Collector Inputs

2016-07-27 Thread Tony
Thank you Marius, everything works well. 2016-07-27 9:54 GMT+01:00 Marius Sturm : > Hi Tony, > the collector option is implemented as a plugin. So please check in your > server configuration the plugin_dir directive and that the collector plugin > is actually located in th

[graylog2] NXLOG

2016-09-09 Thread Tony
Hi Guys, I have a question. Is it necessary nxlog installation for collector-sidecar? My environments are Debian 7/8 and use Graylog 2, ES and MongoDB. Thanks Tony -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe

Re: [graylog2] NXLOG

2016-09-09 Thread Tony
Thank you Marius. Il giorno venerdì 9 settembre 2016 13:00:19 UTC+1, Marius Sturm ha scritto: > > Hi Tony, > nxlog is not included in the collector-sidecar package, so if you want to > use the nxlog backend you have to install it along with sidecar. > > Cheers, > Maris >

Re: [graylog2] NXLOG

2016-09-15 Thread Tony
Hi Marius, sorry I have one question more for you. When I installed collector-sidecar and NXlog I see they have root privileges. Is it possible they can run as an unprivileged user? Thanks Tony 2016-09-09 13:31 GMT+01:00 Tony : > Thank you Marius. > > Il giorno venerdì 9 settembre 2

[graylog2] Different color for different status

2016-09-17 Thread Tony
terminal. So I would like to see Yellow for Warn, Red for Error, Green for INFO. Is it possible? Thanks in advance Tony -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from i

[graylog2] geolocation problem

2016-09-17 Thread Tony
in advance Tony -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...@googlegroups.com. To view this discussion on the web vi

Re: [graylog2] Re: geolocation problem

2016-09-20 Thread Tony
Ho Jochen, I had tried all fields with the same error. The file is the classic apache2 access.log file. Thanks Tony 2016-09-19 8:48 GMT+01:00 Jochen Schalanda : > Hi Tony, > > what field do you try to graph on the map widget and what are the contents > of that field? > > Also

[graylog2] Weird Stream behaviour

2016-09-20 Thread Tony
Hi All, I'll try to create a stream and the callback alert, but I have a problem. First test stream field = debug_level match exactly = INFO and it works 100% Than I made another one with field = message match exactly = WARN (or INFO or whatever) and doesn't work nothing is catchup. Annexe a sc

[graylog2] Re: Weird Stream behaviour

2016-09-20 Thread Tony
Sorry small errata corrige: Than I made another one with field = message match exactly = DEBUG and doesn't work nothing is catchup, even in the message field DEBUG is present. Il giorno martedì 20 settembre 2016 15:54:06 UTC+1, Tony ha scritto: > > Hi All, > I'll try to crea

Re: [graylog2] Re: Weird Stream behaviour

2016-09-21 Thread Tony
Thank you Jochen to Highlight me :-) Now it works. Thanks Tony 2016-09-21 11:06 GMT+01:00 Jochen Schalanda : > Hi Tony, > > your last post is missing the important part: Are the stream rules > evaluated with logical AND (all rules have to match) or logical OR (only > one ru

Re: [graylog2] Different color for different status

2016-09-22 Thread Tony
Thank you for your answer Jan, but to be honest I don't really know how to do that with decorators. As you can see in the screenshot the lines already comes with the ANSI escape color sequence but are shown in cyan on Graylog. Thanks Tony 2016-09-18 11:51 GMT+01:00 Jan Doberstein : >

Re: [graylog2] Different color for different status

2016-09-22 Thread Tony
Thank you Jochen, should be see it in the next release? Thanks Tony 2016-09-22 15:05 GMT+01:00 Jochen Schalanda : > Hi Tony, > > the message decorators currently (as of Graylog 2.1.1) do not support > changing the HTML markup of messages in the web interface. > > Cheer

Re: [graylog2] 404 Error at Login

2016-10-21 Thread Tony
/etc/ssl/certs/example.com.crt SSLCertificateKeyFile /etc/ssl/private/example.com.key SSLCertificateChainFile /etc/ssl/certs/gd_bundle-g2-g1.crt http://172.31.20.211:9000/> Order deny,allow Allow from all Any idea how to fix it? T

[graylog2] Has anyone tried systemd socket activation for 514?

2016-05-09 Thread Tony Murray
So we could run graylog as a non-root user. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...@googlegroups.com. To view this discussion on th

[graylog2] Re: Has anyone tried systemd socket activation for 514?

2016-05-09 Thread Tony Murray
Good suggestions, not exactly what I asked, but thanks I'll probably use iptables for now. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...

[graylog2] Re: Has anyone tried systemd socket activation for 514?

2016-05-09 Thread Tony Murray
Since I use nftables on that system, this is what I added: > table ip nat { > chain prerouting { > type nat hook prerouting priority 0; policy accept; > tcp dport shell redirect to 5514 > udp dport shell redirect to 5514 > } > >

[graylog2] Re: Graylog Use with SQL Server 2014

2016-07-21 Thread Tony Green
I too have numerous SQL Server installations and would like to hear about these options as well. On Friday, June 10, 2016 at 11:46:37 AM UTC-7, matt.k...@fivestarprofessional.com wrote: > > Hello, > > Does anyone have experience setting up Graylog for use with SQL Server > 2014 logs? > > Best p