Alright! thanks a lot. Additional question: 1. how do you remove the log your monitoring with nagios log server without removing the monitored server from nagios log server? 2. I tested the file monitoring with nagios log server and I want to remove the file monitoring so is there a way to remove? a...
yeah but when i'm applying my configurations in the UI, I always get this message "The apply command hasn't started yet. The instance may not be online or is unreachable."
I don't know the reason, is there a log file generated when applying a config?
ohhhh I see, thanks for that. I'll just let them decide if they want to have load balancing. Using the production network, the production traffic won't be affected right? So there's no need to use a private network between them?
Good Day, Scenario: We have 2 stand alone IDS [snort] and supervisor wants to connect the IDS to a Cluster of Nagios Log Server and the middle device between them is a F5 load balancer. Is it a good Idea? or We can just throw the snort alerts to Nagios Log Server directly? Also, is it a good idea to...
Yes, my current method is to restart logstash with: systemctl restart logstash eventhough I only changed the input.conf. What im asking is if there's a way I can edit the conf files (input, filter, output) without restarting logstash?
Good Day Just want to ask what's wrong on my nagios log server instance. It seems that I can't apply the configurations made. It always show " The instance is likely offline, please check and try again". My current method is to configure the logstash pipeline [input, filter & output] t...
The only solution I can think of is to open another port for Error logs. Which is a bad option since there might be another log file that I need to Monitor and end up opening a so many ports. Don't know how to make nagios log server know which one is access log & which one is error log
Thanks for that, here's my Global Config for NLS: # # Logstash Configuration File # Dynamically created by Nagios Log Server # # DO NOT EDIT THIS FILE. IT WILL BE OVERWRITTEN. # # Created Fri, 11 Jan 2019 10:42:58 +0800 # # # Global inputs # input { syslog { type => 'syslog' port => 5544 } tcp { typ...