Search found 3 matches

by dlimanow
Wed Mar 23, 2016 8:59 pm
Forum: Nagios Log Server
Topic: Delete hosts?
Replies: 1
Views: 751

Delete hosts?

Hi, I would like to remove hosts being logged. Specifically I would not like to log my Nagios Log Server or Nagios XI server anymore. I used to have auditd reporting to both so I disabled auditd. I tried to look in /etc/rsyslog.conf to stop the logs from being sent to Nagios LS, but I see nothing to...
by dlimanow
Mon Mar 21, 2016 9:18 pm
Forum: Nagios Log Server
Topic: Query/Search Issues
Replies: 3
Views: 935

Re: Query/Search Issues

Give this query a try: type:EXECVE This does not work. However, I have just been using "EXECVE" and that has been working for me. But why can I not query more than one word? For example, "this = myQuery" only results in the word "this" being highlighted... Thanks for y...
by dlimanow
Thu Mar 17, 2016 12:55 am
Forum: Nagios Log Server
Topic: Query/Search Issues
Replies: 3
Views: 935

Query/Search Issues

Hello, I have 10 servers sending their syslog and auditd information to a centralized Nagios Log Server. I'd like to find the documents that contain "type=EXECVE". However, if I do that (and there are PLENTY of documents with that string plastered all over, nothing shows up after performin...