Re: [rsyslog] need help with rsyslog

2024-05-27 Thread David Lang via rsyslog
uld be far better for you to update to a current version. David Lang On Tue, 28 May 2024, Chun-An Lee via rsyslog wrote: Date: Tue, 28 May 2024 10:31:54 +0800 From: Chun-An Lee via rsyslog To: rsyslog@lists.adiscon.com Cc: Chun-An Lee Subject: [rsyslog] need help with rsyslog Dear All, I ins

[rsyslog] need help with rsyslog

2024-05-27 Thread Chun-An Lee via rsyslog
Dear All, I installed the Rsyslog(8.24.55) on Redhat 7.5. everything looks like okay, but i found an issue that I can only receive the last input block log(oracle: mysky) from the remote soc server(192.168.1.1). If i rearranged them, move the Tag="oracle: mysyk" to the top one and the Tag="oracle

Re: [rsyslog] Need help with Rsyslog Parser

2023-10-11 Thread David Greig via rsyslog
00 > > From: "Gundlapally, Navanitha via rsyslog" > > To: "rsyslog@lists.adiscon.com" > > Cc: "Gundlapally, Navanitha" > > Subject: [rsyslog] Need help with Rsyslog Parser > > > > Hi Team, > > > > I am new to this com

Re: [rsyslog] Need help with Rsyslog Parser

2023-10-11 Thread David Lang via rsyslog
wrote: Date: Wed, 11 Oct 2023 13:20:57 + From: "Gundlapally, Navanitha via rsyslog" To: "rsyslog@lists.adiscon.com" Cc: "Gundlapally, Navanitha" Subject: [rsyslog] Need help with Rsyslog Parser Hi Team, I am new to this community and hoping to get some hel

Re: [rsyslog] Need help with Rsyslog Parser

2023-10-11 Thread David Lang via rsyslog
Templates are how you format messages that you are outputting, they have nothing to do with parsing messages. I would first suggest that you log the message with the template RSYSLOG_DebugFormat so that you can see all the variables that get parsed out of the message already, and what is actua

[rsyslog] Need help with Rsyslog Parser

2023-10-11 Thread Gundlapally, Navanitha via rsyslog
Hi Team, I am new to this community and hoping to get some help with my below query. We are collecting some network logs from client devices to a Syslog collector (A) which is managed by Vendor and the next hop is on the syslog collector (B) managed by us. On Collector B, I see the events are