<html>
<head>
<style>
.hmmessage P
{
margin:0px;
padding:0px
}
body.hmmessage
{
FONT-SIZE: 10pt;
FONT-FAMILY:Tahoma
}
</style>
</head>
<body class='hmmessage'>
Hello all;<br><br>I currently have all of my syslog-ng output (DEST) going to flat-files as well as MySQL. I would like to begin using SEC (perl based event correlation engine) to further parse events and create either more alerts (SMS pages and emails) as well as additional syslog message insertions (via logger I think) . <br><br>I am looking to find if anyone is using SEC, and in what way? I.e., are you running it as a DEST in syslog-ng.conf, or are you running it via a FIFO file? or what?<br><br>Also, I am looking for SEC config files that I could use as a good basis for my own where my environment is heterogenous with Windows, Cisco, Linux, Solaris, etc.<br><br>Many thanks in advance,<br><br>.vp<br> </body>
</html>