Syslog Agents for Win32



I've got my first Linux box up and running as a syslog server. It is working fine. I've got several Windows servers that I would like to have them log their event logs to the Linux box.

I've been using a program called "winlogd" (http://edoceo.com/creo/winlogd.php). However it seems to log TOO much. System calls, debug info, etc, etc are all being logged. I don't know of any way to adjust it, and since it doesn't appear to conform to Unix syslog levels and I don't know how to go about filtering out the junk in my syslog-ng conf file.

Is there a "better" syslog agent for Windows out there that I've missed? Or is there a setting on this program or in my conf file that I've missed? Thanks for your help.

Nathan


--
To UNSUBSCRIBE, email to debian-user-REQUEST@xxxxxxxxxxxxxxxx with a subject of "unsubscribe". Trouble? Contact listmaster@xxxxxxxxxxxxxxxx



Relevant Pages

  • RE: very busy syslog server
    ... Subject: Re: very busy syslog server ... >Subject: Re: very busy syslog server ... >than one packet per interrupt. ...
    (freebsd-performance)
  • RE: audit trails for file access
    ... I actually use NTSyslog to send my logs off to a syslog server, ... On the syslog server side, I use syslog-ng to log to a MySQL database. ... In regards to logging to another machine, use the Eventlog to Syslog ...
    (Focus-Microsoft)
  • RE: Event log counts...
    ... | syslog server in our environment. ... Kiwi will send an email to you with this information... ... It's kind of a chicken/egg problem, but dumping the event logs remotely ... Syslog Daemon started on: Fri, ...
    (Security-Basics)
  • RE: Syslog tools
    ... Any syslog server running on a Microsoft Operating system will have the ... The sources would be IIS logs, ...
    (Security-Basics)
  • RE: syslog management
    ... I have just finsihed deploying a corporate syslog server setup. ... Kiwisyslog 7.0 (autosplits logs, filters, listens on TCP/UDP and SNMP and logs) ... but too hard to build up filters on for a large number of servers) ...
    (Focus-IDS)