• Products
    • View all products
    • Free trials
    • Log Management Appliance
    • Log Management Software
    • Open Source Log Management
  • Solutions
    • Optimizing SIEM
    • Universal log collection and routing
    • Big data ingestion
    • Rapid search and troubleshooting
    • Meeting compliance requirements
    • Secure data archive
  • Resources
    • Customer Stories
    • Documents
    • Events
    • Technical Documentation
      • syslog-ng Premium Edition
      • syslog-ng Store Box
      • syslog-ng Open Source
    • Videos
  • Trials
  • Support
    • Packages
    • By Product
      • syslog-ng Premium Edition
      • syslog-ng Store Box
  • Partners
    • Overview
    • Partner Circle Log In
    • Become a Partner
    • Find a Partner
  • Community
    • Home
    • Blog
    • Open Source Edition Mailing List
syslog-ng Community
syslog-ng Community
  • Site
  • User
  • Site
  • Search
  • User
syslog-ng Community
syslog-ng Community
Blog
    • New
    Blog
    • All tags
    • Kibana
    • audit
    • CentOS
    • Elasticsearch
    • ESK
    • Fedora
    • GeoIP
    • GUI
    • iptables
    • Java
    • JSON
    • log management
    • metrics
    • netdata
    • OpenShot
    • opensource
    • parsing
    • patterndb
    • RHEL
    • SIEM
    • splunk
    • SSB
    • ssh
    • syslog-ng
    • visualization
    • web interface
    • Syslog-ng and Security Onion

      Syslog-ng and Security Onion

      Peter Czanik
      Peter Czanik

      One of the most interesting projects utilizing syslog-ng is Security Onion, a free and open source Linux distribution for threat hunting, enterprise security monitoring, and log management. It is utilizing syslog-ng for log collection and log transfer…

      • over 4 years ago
      • syslog-ng Community
      • Blog
    • Jump-starting ESK: Elasticsearch, syslog-ng and Kibana

      Jump-starting ESK: Elasticsearch, syslog-ng and Kibana

      Peter Czanik
      Peter Czanik

      If you want to test drive syslog-ng or just want to learn something new, I recommend you checking out the BLACK ESK project. By running a single script, you can set up a containerized test environment, complete with Elasticsearch, Kibana and a syslog…

      • over 4 years ago
      • syslog-ng Community
      • Blog
    • Insider 2019-12: Kibana 7 & GeoIP; PE 6 to 7 upgrade; RHEL 8; Elastic stack;

      Insider 2019-12: Kibana 7 & GeoIP; PE 6 to 7 upgrade; RHEL 8; Elastic stack;

      Peter Czanik
      Peter Czanik

      Dear syslog-ng users,


      This is the 77th issue of syslog-ng Insider, a monthly newsletter that brings you syslog-ng-related news.

      NEWS

      Set up Kibana 7 for syslog-ng & GeoIP

      Version 7 of the Elastic stack was released a few months ago, and brought…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • Set up Kibana 7 for syslog-ng & GeoIP

      Set up Kibana 7 for syslog-ng & GeoIP

      Peter Czanik
      Peter Czanik

      Version 7 of the Elastic stack was released a few months ago, and brought several breaking changes that affect syslog-ng. In my previous blog post, I gave details about how it affects sending GeoIP information to Elasticsearch. From this blog post you…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • Using syslog-ng with the Elastic stack

      Using syslog-ng with the Elastic stack

      Peter Czanik
      Peter Czanik

      One of the most popular destinations of syslog-ng is Elasticsearch. Any time a new language binding was introduced to syslog-ng, someone implemented an Elasticsearch destination for it. For many years, the official Elasticsearch destination for syslog…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • syslog-ng and Elasticsearch 7: getting started on RHEL/CentOS

      syslog-ng and Elasticsearch 7: getting started on RHEL/CentOS

      Peter Czanik
      Peter Czanik

      Version 7 of the Elastic Stack, packed with new features and improved performance, has now been available for some time. Elasticsearch is not the only one to have come up with a major new version recently: starting with version 3.21, syslog-ng features…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • syslog-ng with Elastic Stack 7

      syslog-ng with Elastic Stack 7

      Peter Czanik
      Peter Czanik

      For many years, anything I wrote about syslog-ng and Elasticsearch was valid for all available versions. Well, not anymore. With version 7 of Elasticsearch, there are some breaking changes. These changes are mostly related to the fact that Elastic is…

      • over 6 years ago
      • syslog-ng Community
      • Blog
    • hook-commands: easy driver setup

      hook-commands: easy driver setup

      Peter Czanik
      Peter Czanik

      The hook-commands() option of syslog-ng makes it easy to execute external commands when a driver is started or stopped. For example, you can open a port in the firewall when a network source is started and close it once syslog-ng is shut down. Or you…

      • over 6 years ago
      • syslog-ng Community
      • Blog
    • syslog-ng and Elasticsearch 5: getting started on RHEL/CentOS

      syslog-ng and Elasticsearch 5: getting started on RHEL/CentOS

      Peter Czanik
      Peter Czanik

      For the last six months, Elastic’s communication centered around the upcoming Elastic Stack 5.0. And finally it is here: tons of new features, improved performance and a single version number for all Elastic products. Compatibility with syslog-ng was…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Logging to Elasticsearch made simple with syslog-ng

      Logging to Elasticsearch made simple with syslog-ng

      Peter Czanik
      Peter Czanik

      Elasticsearch is gaining momentum as the ultimate destination for log messages. There are two major reasons for this:

      • You can store arbitrary name-value pairs coming from structured logging or message parsing.

      • You can use Kibana as a search and visualization…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • syslog-ng and Elasticsearch 6: getting started on RHEL/CentOS

      syslog-ng and Elasticsearch 6: getting started on RHEL/CentOS

      Peter Czanik
      Peter Czanik

      Version 6 of the Elastic Stack has now been available for some time packed with new features and improved performance. Compatibility of syslog-ng was checked already during the alpha phase of development, as syslog-ng is becoming popular among Elasticsearch…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Web interfaces for your syslog server – an overview

      Web interfaces for your syslog server – an overview

      Peter Czanik
      Peter Czanik

      This is the 2020 edition of my most read blog entry about syslog-ng web-based graphical user interfaces (web GUIs). Many things have changed in the past few years. In 2011, only a single logging as a service solution was available, while nowadays, I regularly…

      • over 4 years ago
      • syslog-ng Community
      • Blog
    • Sending netdata metrics through syslog-ng to Elasticsearch

      Sending netdata metrics through syslog-ng to Elasticsearch

      Peter Czanik
      Peter Czanik

      netdata is a system for distributed real-time performance and health monitoring. You can use syslog-ng to collect and filter data provided by netdata and then send it to Elasticsearch for long-term storage and analysis. The aim is to send both metrics…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Creating time lapse videos from log messages using OpenShot

      Creating time lapse videos from log messages using OpenShot

      Peter Czanik
      Peter Czanik

      You can create your own time lapse videos from log messages. It is not rocket science and is possible using a purely open source tool chain. In my previous blog, I explained how you can create a heat map from IP addresses in your log messages using syslog…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Creating heat maps using the new syslog-ng geoip2 parser

      Creating heat maps using the new syslog-ng geoip2 parser

      Peter Czanik
      Peter Czanik

      The new geoip2 parser of syslog-ng 3.11 is not only faster than its predecessor, but can also provide a lot more detailed geographical information about IP addresses. Next to the usual country name and longitude/latitude information, it also provides…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Application adapters and enterprise-wide message model for syslog-ng

      Application adapters and enterprise-wide message model for syslog-ng

      Peter Czanik
      Peter Czanik

      Do you want to simplify parsing your log messages? Try the new “application adapter” and “enterprise-wide message model” frameworks in syslog-ng: you can automatically parse log messages and forward the results to another syslog-ng instance. Optionally…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • How to create heat maps to show who’s trying to connect your router

      How to create heat maps to show who’s trying to connect your router

      Peter Czanik
      Peter Czanik

      Last week after publishing my Elasticsearch 5 blog, I finally had a little time to take a look at the logs coming from my Turris Omnia router. It is running in a quiet neighborhood of Budapest, but looking at my logs it shows that I’m living in a busy…

      • over 8 years ago
      • syslog-ng Community
      • Blog
    • View related content from anywhere
    • More
    • Cancel
    • Company
      • About Us
      • Careers
      • Contact Us
      • News
    • Resources
      • Blogs
      • Customer Stories
      • Documents
      • Events
      • Videos
    • Support
      • Overview
      • Open Source Edition Mailing List
      • Technical Documentation
    • Social Networks
      • Facebook
      • Github
      • Twitter
      • Youtube
    • Partners
      • Become a Partner
      • Partner Finder
      • Partner Login
    • © 2025 One Identity LLC. ALL RIGHTS RESERVED.
    • Legal
    • Terms of Use
    • Privacy