[graylog2] Search Issue ...

2015-09-08 Thread Claus Koell
Hi ! We are using graylog 1.1.6 and we have troubles with some search strings. We are using a collector to reading files from a windows system. We can see a field named 'source_file' in these messages Sample Value: C:\Program

[graylog2] LDAP authentication with Graylog 1.2 RC2

2015-09-08 Thread yveslouis . rofort
Hi, I tried quickly the graylog 1.2 RC2, but I had a bloquant problem with authentication. Does the ldap authentication strategy will change in near future ? - Can we use ldap authentication with users without ldap group ? - Can we create groups but not ldap groups ? (The old users can't no

[graylog2] Re: LDAP authentication with Graylog 1.2 RC2

2015-09-08 Thread Kay Roepke
Hi! Old users should have been migrated to the new permission system automatically, please check your graylog server log file. It should contain lines like: "INFO [UserPermissionMigrationPeriodical] Migrating permissions to roles for user" You can use roles without LDAP group mapping, yes.

[graylog2] Re: No Graylog servers available.

2015-09-08 Thread HockeyFan0000
Thank you for your reply. I gave Graylog write permissions on the folders in that path and restarted the 'graylog-server' service, but nothing has changed. I'm still getting the same error in the log. Do you have any other suggestions? On Saturday, September 5, 2015 at 4:25:39 AM UTC-4,

[graylog2] [ANNOUNCE] Graylog v1.2-rc.4 has been released

2015-09-08 Thread Lennart Koopmann
Hey everybody, we just released Graylog v1.2-rc.4: https://www.graylog.org/announcing-graylog-1-2-rc-4/ Please try it out and post all feedback to this mailing list. Thanks, Lennart -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To

[graylog2] Re: elasticsearch version requirements

2015-09-08 Thread Kay Roepke
On Tuesday, 8 September 2015 19:19:05 UTC+2, Mike Daoust wrote: > Is it documented anywhere which versions of elasticsearch are suggested for > graylog? You should run the latest release version, but at least 1.6.x for the security and reliability improvements. Usually we aim to support the

[graylog2] Extracting data from Jasig CAS 4.0 cas.log log file for parsing with Graylog

2015-09-08 Thread Carl Daudt
We would like to use Graylog2 to view information extracted from our cas.log file from our Jasig CAS 4.0 service. Any recommendations about some sort of how to extract the data from cas.log into a format that can be used by Graylog2 would be much appreciated. -- You received this message

[graylog2] Re: LDAP authentication with Graylog 1.2 RC2

2015-09-08 Thread Jochen Schalanda
Hi Yves, the automatic migration of legacy user accounts to the new scheme has been added in Graylog 1.2.0-rc.3. I'd recommend upgrading to Graylog 1.2.0-rc.4 in your case to verify that the problem has been solved. Cheers, Jochen On Tuesday, 8 September 2015 15:19:36 UTC+2,

[graylog2] ERR_SSL_WEAK_SERVER_EPHEMERAL_DH_KEY when using HTTPS for web interface

2015-09-08 Thread Russ Collier
Howdy, This appears to have started happening recently with newer versions of Chrome (version 45.0.2454.85) and Firefox (version 39), but using the Graylog Web Interface 1.1.6 with HTTPS and a valid SSL certificate/Java KeyStore (type: JKS), when I access our Graylog web interface

[graylog2] upgrading graylog-server from 1.16 to 1.2rc4 totally broke all LDAP access

2015-09-08 Thread Jason Haar
Hi there Says it all really. After upgrading from 1.16 to 1.2rc4, none of the LDAP (actually ActiveDirectory) accounts work - even the Admin ones (thankfully the standard backdoor "admin" account still works) I tried logging in with a new LDAP account - it also fails (default user mode:

[graylog2] Re: upgrading graylog-server from 1.16 to 1.2rc4 totally broke all LDAP access

2015-09-08 Thread Jason Haar
Whoops - forgot to mention this was LDAPS to our Global Catalog LDAP service (that's the trick Microsoft uses to emulate "flattening" an AD hierarchy Also I just changed from LDAPS to LDAP so that I could sniff what's going on. According to wireshark the group search filter was working -

[graylog2] Re: Extractors: Add field with static content

2015-09-08 Thread Drew Miranda
I believe a static field can be configured per input. I don't have the web interface in front of me to verify. A static field configured on an input will be set for every message and can't be filtered with extractor rules. A more flexible alternative may be to use drools rules to add static

[graylog2] Re: ERR_SSL_WEAK_SERVER_EPHEMERAL_DH_KEY when using HTTPS for web interface

2015-09-08 Thread Drew Miranda
Thanks as well! Took a bit of fiddling before I checked here. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to graylog2+unsubscr...@googlegroups.com. To view

[graylog2] Re: upgrading graylog-server from 1.16 to 1.2rc4 totally broke all LDAP access

2015-09-08 Thread Drew Miranda
I just upgraded to 1.2 rc2 so I'll check my configuration tomorrow and see if it is helpful to you. For what it's worth the upgrade worked and ldap login and group mappings worked. -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To

Re: [graylog2] LDAP authentication with Graylog 1.2 RC2

2015-09-08 Thread Yves Louis ROFORT
Jochen, Kay Yes Kay, it's that problem. Thanks Jochen for the information, I'll try the 1.2RC4 ASAP. Thanks for your answers. Regards, Yves Louis 2015-09-08 16:20 GMT+02:00 Kay Röpke : > Yves Louis, > > I think I know what you are referring to now on the edit user page: > >

[graylog2] elasticsearch version requirements

2015-09-08 Thread Mike Daoust
Is it documented anywhere which versions of elasticsearch are suggested for graylog? -- You received this message because you are subscribed to the Google Groups "Graylog Users" group. To unsubscribe from this group and stop receiving emails from it, send an email to