ttp://docs.graylog.org/en/1.3/pages/streams.html#alert-callbacks-types-explained
>
> in your email template (scroll down a little bit).
>
> In your case, you would access the ad_username field of the message with
> ${message.fields.ad_username}.
>
> Cheers,
> Jochen
>
I have an extractor that pulls the username whenever someone is locked out
of my Windows domain. It puts the username into a field called *ad_username*.
I now want to use that custom field that I made inside an email callback so
I can send extremely simplified email alerts like this:
*A user wa
We are using Graylog2 v1.3.4 with Graylog Collector 0.4.1 to grab logs from
our Windows machines. I have noticed an issue where some log entries are
being replaced with the word "Empty" in the message field (all the other
fields are correct). These are valid log entries which are not empty;
val
We are using Graylog2 v1.3.4 with GrayLog collector v0.4.1 on our Windows
boxes to collect Windows Event Logs. I notice that on all of these Windows
machines we are often (1 in 20) receiving log entries where the message
field contains the text "Empty" instead of the proper entry. Valuable
info
Silly question: I notice the Graylog documentation has been updated and
that the Graylog Collector is now depreciated with v2.0 GA. Looks like
NXLog is recommended for Windows clients. so I want to go ahead and
start switching over to NXLog, but the official docs also mention
installing Si
We have concerns that any one of our machines could have an issue and
suddenly start flooding Graylog with a million messages per second (as an
example) and filling up all our indexes and disk space 1000x faster than
anticipated while we were away for the weekend; we have fears of coming in
on
In Graylog if I click "System" on the menu, then "Collectors", I only see
about 10 Collectors listed - even if I hit the "Include Inactive
Collectors" button. However, if I click "Sources" from the menu it shows me
that we in fact have at least 50 collectors up and running perfectly. So...
Does
We've been experimenting with dozens of dashboards and notice that
regardless of if the dashboard is "locked" or not it frequently re-arranges
the widgets graphs and other items we have placed. It seems to want to
adjust them based on the browser resolution you are using, or something
like that
On our DNS server one of my machines has two A records, and two
corresponding PTR records.
ie:
server1 = 10.10.10.1
server001 = 10.10.10.1
This causes Graylog to treat this server as two different sources, it
splits all input from that collector 50/50, some log entries show as source
"server1"
g.org/en/1.3/pages/sending_data.html#sending-syslog-from-macos-x-hosts
>
>
> Cheers,
> Jochen
>
> On Wednesday, 17 February 2016 20:12:01 UTC+1, Dennis Seaton wrote:
>>
>> Has anyone had success collecting logs from OSX? What about El Capitan
>> (v10.11.3)?
>&
Has anyone had success collecting logs from OSX? What about El Capitan
(v10.11.3)?
>From what I find on Google it USED to be as simple as adding a line to your
syslog.conf file in OSX:
**.* mygraylog.server.com*
But that doesn't appear to work anymore, and if you look at the syslog.conf
file
Good info, thanks Jochen
--
You received this message because you are subscribed to the Google Groups
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web visit
https:
Hello,
I am new to Graylog and looking for suggestions on how to get rotating log
files (text files) into Graylog2. I have several apps that use rotating log
files, these apps are not syslog capable, and the format of their log files
cannot be altered. Here's an example of how they are named:
Hello,
I am looking for suggestions
--
You received this message because you are subscribed to the Google Groups
"Graylog Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to graylog2+unsubscr...@googlegroups.com.
To view this discussion on the web
14 matches
Mail list logo