[syslog-ng] Pattern extraction

majid as majid_groups at yahoo.com
Thu Aug 12 15:41:54 CEST 2010


Hi
Thanks for replying and file.
I work on network management project(Correlation of logs), my big problem is log classification and extract log field(normalization of logs). Do you have any idea for it? 

--- On Thu, 12/8/10, Robert Fekete <frobert at balabit.com> wrote:


From: Robert Fekete <frobert at balabit.com>
Subject: Re: [syslog-ng] Pattern extraction
To: "Syslog-ng users' and developers' mailing list" <syslog-ng at lists.balabit.hu>
Date: Thursday, 12 August, 2010, 4:19 PM


majid as wrote:

> Hi
> I have problem with pattern extraction from syslog messages. can anyone help me how extract patterns?


Hi,
I assume you are trying to use the pattern database (db_parser()). My collegue, 
Peter Holtzl has written a tutorial about it that you might find useful: 
http://www.balabit.com/dl/white_papers/syslog-ng-v3.1-whitepaper-message-classification-en.pdf

Otherwise, please let us know exactly what you are trying to do, how, and what 
the problem is so we can help you.

Regards,

Robert

>  
> 
> 
> 
> 
> ------------------------------------------------------------------------
> 
> ______________________________________________________________________________
> Member info: https://lists.balabit.hu/mailman/listinfo/syslog-ng
> Documentation: http://www.balabit.com/support/documentation/?product=syslog-ng
> FAQ: http://www.campin.net/syslog-ng/faq.html
> 

______________________________________________________________________________
Member info: https://lists.balabit.hu/mailman/listinfo/syslog-ng
Documentation: http://www.balabit.com/support/documentation/?product=syslog-ng
FAQ: http://www.campin.net/syslog-ng/faq.html



-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/syslog-ng/attachments/20100812/de316fe2/attachment.htm 


More information about the syslog-ng mailing list