Hi All - I am new to Graylog and was looking for an option for log monitoring where I am unable to use Splunk. So far I really like it but I am having issues with timezone setup. I am deploying via Docker, everything is working fine, I can create a new user and set their timezone properly and it shows up on the search timeline correctly however the logs are still using a different timezone. Here is my docker-compose.yml file, I am in USA Central timezone but everything continues to show UTC.
#DB in share for persistence
#data folder in share for persistence
- “ES_JAVA_OPTS=-Xms512m -Xmx512m”
#journal and config directories in local NFS share for persistence
# CHANGE ME (must be at least 16 characters)!
# Password: admin
entrypoint: /usr/bin/tini – wait-for-it elasticsearch:9200 – /docker-entrypoint.sh
# Graylog web interface and REST API
# Syslog TCP
# Syslog UDP
# GELF TCP
Any ideas? I thought adding the environment variables would work but so far no luck. The containers all have their timezones set properly and the devices feeding into the system have their timezones set correctly as well.
Thanks for any help!