Every few days all our systems stop sending logs

This support forum board is for support questions relating to Nagios Log Server, our solution for managing and monitoring critical log data.
Post Reply
Frouldeste
Posts: 1
Joined: Wed Mar 27, 2024 3:05 am

Every few days all our systems stop sending logs

Post by Frouldeste »

Every few days all our systems stop sending logs (or so it appears). But, I can get the logs to start up again once I restart logstash (via "service logstash restart"). I assume I shouldn't need to continuously restart logstash. What are some possible causes and what logs on the OS or application can I look at to try and troubleshoot the issue?
User avatar
jmichaelson
Posts: 123
Joined: Wed Aug 23, 2023 1:02 pm

Re: Every few days all our systems stop sending logs

Post by jmichaelson »

You can check the logstash logs by entering journalctl -xeu logstash in a terminal window.

The logstash logs can be found in /usr/local/nagioslogserver/logstash/logs.

Look for anything relating to an unhandled exception. Feel free to post snippets here (sanitized, if necessary, to remove private data) and we can provide further help.
Please let us know if you have any other questions or concerns.

-Jason
Post Reply