[189802] in North American Network Operators' Group
Re: syslog server
daemon@ATHENA.MIT.EDU (Valdis.Kletnieks@vt.edu)
Tue Jun 7 02:25:20 2016
X-Original-To: nanog@nanog.org
To: Maximino Velazquez <mvm@transtelco.net>
From: Valdis.Kletnieks@vt.edu
In-Reply-To: <CADXzBABxoyjB_XxqymhdReX1WubZJfvJSTz3sX72=oe+4C7Dpw@mail.gmail.com>
Date: Tue, 07 Jun 2016 02:25:12 -0400
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org
--==_Exmh_1465280712_2077P
Content-Type: text/plain; charset=us-ascii
On Mon, 06 Jun 2016 14:59:51 -0600, Maximino Velazquez said:
> What is the best syslog server (opensource)?
Step 0: Define what "best" means in your environment.
What features do you need? Routing to a central aggregation server over TLS?
Powerful regex-based routing? Ingestion into a database (a la splunk or Elk)
for data mining? Ability to deal with insanely high message rates? Other
must-have or don't-care features? License pricing? Vendor support?
Step 1: After figuring out what you need, make a matrix of the available
options and how well they fit.
(We have in production syslog-ng, rsyslog, splunk, Elk, and probably a few
others I've forgotten, for different purposes....)
--==_Exmh_1465280712_2077P
Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
Comment: Exmh version 2.5 07/13/2001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=066P
-----END PGP SIGNATURE-----
--==_Exmh_1465280712_2077P--