Before you post: Your responses to these questions will help the community help you. Please complete this template if you’re asking a support question. Don’t forget to select tags to help index your topic!
1. Describe your incident:
I am trying to put to run a GRAYLOG SERVER and I am trying to receive logs from ubuntu machine 22.04 with NXLOG, all is running ok but I am not receiving any logs so What´s going on?
2. Describe your environment:
debian 11
OS Information:
debian 11
Package Version:
11.5 bullseye
graylog 4.3 server
Service logs, configurations, and environment variables:
I need receive LOGS of the servers to make a control in a UBUNTO with NXLOG, maybe willbe do it in windows too.
3. What steps have you already taken to try and solve the problem?
I have changed the configuration but nothing at all. I have installed a service apache2 to it created nwe logs but nothing at all, so I am lost and this the why I write this post.
4. How can the community help?
Filebeat works ok and winlogbeat too but I would like to run with nxlog.
Thanks a lot to all… Best regards, best new year 2023.
Hey Jose Manuel, Can you post your nxlog config?
Have you tried to test your config?
/opt/nxlog/bin/nxlog -v
[OPTIONS]
[-h] print help
[-f] run in foreground, otherwise try to start the nxlog service
[-c conffile] specify an alternate config file
[-i] install service available to service manager
[-u] uninstall service
[-s] stop running nxlog service
[-v] verify configuration file syntax
Hi mister
the file /var/log/nxlog/nxlog.log make an error to read the file /var/log/boot.log and I made chmod 777 /var/log/boot.log and I am receiving data but now i am going to try receive the file that I want… With centos7 I am still lock.
Not sure how you set up permissions and since were dealing with /var/log/boot.log the user for nxlog can be added to the user/Group who owns /var/log/boot.log. Its not the best but better then “Open World Wide” on your boot.log.
Thanks a lot mister Gsmith
chmod 444 would it be better?
I will try both options, well it is my jobs.
I am going to put graylog in ssl/tls mode, another war in the configuration so… TO BE CONTINUED…