New User? Register here - Existing Users: Username: Password: [Advanced Login]

 

 

Current Poll

What language for system administration do you use ?







( 731 votes ~ 3 comments )

 

Weblog entry #23 for eric

syslog server to centralise remote logs
Posted by eric on Tue 23 Nov 2010 at 08:47

Hi all, I'm looking for a syslog server to centralise our many (mainly Windows) servers. There seems to exists two real alternatives: rsyslog and syslog-ng. A comparison (from 2008) exists here: http://www.rsyslog.com/doc/rsyslog_ng_comparison.html but I prefer to ask here for real experience.
So my questions are:

  • what syslog server are you using?
  • have you compared syslog-ng and rsyslog features before choosing one? and when?
  • do you feel there are limitations, maybe blocking limitations in the one you use?
  • what do you use (if you use any) web interface for visualization? Do you any aggregation/correlation software for your logs? And which?

As you see, my idea is to use a syslog server to centralise logs, but also to provide a web interface for visualisation and even more if i found great software.

I'm waiting for your comments :)

 

Comments on this Entry

Posted by Federico2 (87.238.xx.xx) on Tue 23 Nov 2010 at 12:56
[ Send Message ]
I've been using both. The most important differences I've found are SSL syslog transport, compression.
Personally I prefer syslog-ng's configuration syntax.

[ Parent | Reply to this comment ]

Posted by eric (192.54.xx.xx) on Tue 23 Nov 2010 at 13:07
[ Send Message | View Weblogs ]

SSL syslog transport is only available on rsyslog it seems. But i'm not sure if my syslog client on Windows will support it.

:eric:
http://blog.sietch-tabr.com

[ Parent | Reply to this comment ]

Posted by Anonymous (193.179.xx.xx) on Wed 24 Nov 2010 at 18:16
Hi, I'm using syslog-ng and php-syslog-ng to consolidate logging from a bunch of Windoze and Linux servers. I have it running for almost 3 years and no problem whatsoever.

[ Parent | Reply to this comment ]

Posted by eric (192.54.xx.xx) on Thu 25 Nov 2010 at 13:01
[ Send Message | View Weblogs ]
As you use it for windows servers like I want to do, can you please tell me what syslog client you use for windows?

:eric:
http://blog.sietch-tabr.com

[ Parent | Reply to this comment ]

 

 

Flattr