[syslog-ng] Two questions about syslog-ng

Mik J mikydevel at yahoo.fr
Thu Dec 8 00:50:37 UTC 2022


Hello,

I would like to know if syslog-ng is able to collect netflow and/or sflow flows.
Logstash used to do it through the netflow module.

Is it possible to start a script when receiving a specific syslog ?

Log received
Dec  7 22:36:10 myserver sshd[46926]: somemessage from 192.168.2.201 port 59489 ssh2
Action
/somewhere/script_ban_ip 192.168.2.201

Thank you


More information about the syslog-ng mailing list