• Products
    • View all products
    • Free trials
    • Log Management Appliance
    • Log Management Software
    • Open Source Log Management
  • Solutions
    • Optimizing SIEM
    • Universal log collection and routing
    • Big data ingestion
    • Rapid search and troubleshooting
    • Meeting compliance requirements
    • Secure data archive
  • Resources
    • Customer Stories
    • Documents
    • Events
    • Technical Documentation
      • syslog-ng Premium Edition
      • syslog-ng Store Box
      • syslog-ng Open Source
    • Videos
  • Trials
  • Support
    • Packages
    • By Product
      • syslog-ng Premium Edition
      • syslog-ng Store Box
  • Partners
    • Overview
    • Partner Circle Log In
    • Become a Partner
    • Find a Partner
  • Community
    • Home
    • Blog
    • Open Source Edition Mailing List
syslog-ng Community
syslog-ng Community
  • Site
  • User
  • Site
  • Search
  • User
syslog-ng Community
syslog-ng Community
Blog
    • New
    Blog
    • All tags
    • splunk
    • Debian
    • Elasticsearch
    • Fedora
    • HEC
    • http
    • Insider
    • Kibana
    • macOS
    • MQTT
    • python
    • SC4S
    • Sentinel
    • SIEM
    • SSB
    • syslog-ng
    • syslog-ng Store Box
    • The syslog-ng Insider 2023-11: Splunk; configuration; journald;

      Peter Czanik
      Peter Czanik

      Dear syslog-ng users,


      This is the 114th issue of syslog-ng Insider, a monthly newsletter that brings you syslog-ng-related news.

      NEWS

      Sending logs to Splunk using syslog-ng

      There are many ways you can collect log messages using syslog-ng and forward…

      • over 1 year ago
      • syslog-ng Community
      • Blog
    • Sending logs to Splunk using syslog-ng

      Sending logs to Splunk using syslog-ng

      Peter Czanik
      Peter Czanik

      There are many ways you can collect log messages using syslog-ng and forward them to Splunk. In this blog I collect the history of Splunk support in syslog-ng, and the advantages and disadvantages of various solutions, both open source and commercial…

      • over 1 year ago
      • syslog-ng Community
      • Blog
    • Getting data to Splunk

      Peter Czanik
      Peter Czanik

      Getting data to Splunk can be challenging. Syslog is still the most important data source, and it can provide you with hard-to-solve problems (for example, like high volume, non-compliant messages, unreliable network protocol (UDP), and more). The syslog…

      • over 2 years ago
      • syslog-ng Community
      • Blog
    • syslog-ng Store Box Splunk/HEC and Sentinel destinations

      Peter Czanik
      Peter Czanik

      The syslog-ng Store Box (SSB) appliance is built on syslog-ng Premium Edition (PE). SSB inherits most of syslog-ng PE’s features and makes them available with an easy-to-use graphical user interface. One of the typical use cases for SSB (and syslog-ng…

      • over 2 years ago
      • syslog-ng Community
      • Blog
    • The syslog-ng Insider 2021-11: 3.35; SSB; MacOS; mqtt() destination updates;

      The syslog-ng Insider 2021-11: 3.35; SSB; MacOS; mqtt() destination updates;

      Peter Czanik
      Peter Czanik

      Dear syslog-ng users,


      This is the 96th issue of syslog-ng Insider, a monthly newsletter that brings you syslog-ng-related news.


      NEWS

      syslog-ng 3.35.1 available

      Version 3.35.1 of syslog-ng is released. New features include:

      • APT repo for x86 Debian…

      • over 3 years ago
      • syslog-ng Community
      • Blog
    • Sending logs from syslog-ng store box to Splunk

      Sending logs from syslog-ng store box to Splunk

      Peter Czanik
      Peter Czanik

      One of the most popular applications to feed Splunk with syslog messages is syslog-ng. However not everyone is happy to work on the command line anymore. This is where syslog-ng store box (SSB), an appliance built around syslog-ng, can help. The SSB GUI…

      • over 3 years ago
      • syslog-ng Community
      • Blog
    • Insider 2019-11: logging to Elasticsearch; PE 6 to 7 upgrade; Elastic 7; in-list(); off-line deb; Splunk conf;

      Insider 2019-11: logging to Elasticsearch; PE 6 to 7 upgrade; Elastic 7; in-list(); off-line deb; Splunk conf;

      Peter Czanik
      Peter Czanik

      Dear syslog-ng users,

      This is the 76th issue of syslog-ng Insider, a monthly newsletter that brings you syslog-ng-related news.

      NEWS

      Logging to Elasticsearch made simple with syslog-ng

      Elasticsearch is gaining momentum as the ultimate destination for…

      • over 5 years ago
      • syslog-ng Community
      • Blog
    • Using the syslog-ng Store Box (SSB) in front of Splunk

      Using the syslog-ng Store Box (SSB) in front of Splunk

      Peter Czanik
      Peter Czanik

      The syslog-ng application was used for many years as a log collection layer in front of Splunk. But why use a full-blown log management appliance with a graphical user interface instead of a simple command line application? I learned the answers at Red…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Splunk HEC: Sending logs using the program() destination of syslog-ng

      Splunk HEC: Sending logs using the program() destination of syslog-ng

      Peter Czanik
      Peter Czanik

      Recently Splunk started to recommend the use of the HTTP Event Collector (HEC) instead of forwarders. Syslog-ng supports this in multiple ways. Last time I showed you how to use the http() destination of syslog-ng. This time I introduce you to another…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Application adapters and enterprise-wide message model for syslog-ng

      Application adapters and enterprise-wide message model for syslog-ng

      Peter Czanik
      Peter Czanik

      Do you want to simplify parsing your log messages? Try the new “application adapter” and “enterprise-wide message model” frameworks in syslog-ng: you can automatically parse log messages and forward the results to another syslog-ng instance. Optionally…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • Sending logs to Splunk through HTTP

      Sending logs to Splunk through HTTP

      Peter Czanik
      Peter Czanik

      For quite some time, Splunk has recommended to collect syslog messages using syslog-ng, save them to files, and send them to Splunk using forwarders. Unless you have a very high message rate, the HTTP destination of syslog-ng can greatly simplify this…

      • over 7 years ago
      • syslog-ng Community
      • Blog
    • View related content from anywhere
    • More
    • Cancel
    • Company
      • About Us
      • Careers
      • Contact Us
      • News
    • Resources
      • Blogs
      • Customer Stories
      • Documents
      • Events
      • Videos
    • Support
      • Overview
      • Open Source Edition Mailing List
      • Technical Documentation
    • Social Networks
      • Facebook
      • Github
      • Twitter
      • Youtube
    • Partners
      • Become a Partner
      • Partner Finder
      • Partner Login
    • © 2025 One Identity LLC. ALL RIGHTS RESERVED.
    • Legal
    • Terms of Use
    • Privacy