Quantcast
Channel: THWACK: Popular Discussions - Kiwi Syslog
Viewing all 15803 articles
Browse latest View live

Procurve switches not sending syslog messages in KIWI syslog

$
0
0

Hi all,

 

New here, searched for discussions but found no entry on procurve switch(es).

The Procurve switches will not send any syslog messages (wiresharked the server)

Turned on logging on the switch: logging 'ip-address'

 

show debug

 

Debug Logging

  Source IP Selection: Outgoing Interface
  Destination:
   Logging --
     'ip-address' Kiwi Syslog server

       Protocol = UDP
       Port     = 514
     Facility = user
     Severity = info
     System Module = all-pass
     Priority Desc =

 

tried facility 'syslog' still nothing.

 

Only the Procurve switches will not send any syslog messages.

Other devices such as Cisco ASA's work fine.

 

Anyone ideas to solve this?

 

TIA Jaap


Sending events from Cisco 3750 switch

$
0
0

Hello,

I am trying to send events from a Cisco 3750 switch to our Kiwi syslog server but am unsure of the config for the switch.

Should the following work:

Switch (config) # logging on
Switch (config) # logging Syslog Server IP
Switch (config) # logging trap error

This command will send (Error 3) events (0-3) to the Kiwi server via UDP514. Is this the supported method of transfer?

Should this work or is there a "Supported" switch configuration that I should be using.

Thank you,

Chris

Kiwi Syslog not displaying Cisco ASA 5505 syslogs

$
0
0

I have a Cisco ASA 5505 that is setup to send syslogs to a remote syslog server.

I have kiwi syslog (free) installed on a Windows 2003 R2 Server and it is listening on UDP port 514. The syslog server also is my Ciscoworks v3.2 server.

I can ONLY see the Ciscoworks log files and not the ASA. I only want to display the ASA log files.

I have googled, read the user guide, and search the forum and cannot find any procedure that I can tweak Kiwi to log the syslog files from my ASA which is being used as a VPN concentrator.

Any ideas?

Kiwi Grid Run-Time Error '0'

$
0
0

Installed Kiwi Syslog 9.2.1 on Windows 7 pro SP1 VM ESXI server.  After the installation was complete and rebooted the computer.  This error comes up when i log in.

 

I have searched, but have not found any solutions for this error.

How to detect clients that stop sending Syslog messages to the server

$
0
0

How do you detect specific clients that have not sent syslog messages to the server in a specified amount of time?

Syslog and Log Forwarder

$
0
0

Greetings all,

 

Just posted this in the wrong forum, I believe, trying here.

 

We're evaluating Kiwi Syslog Server and the Log Forwarder but can't seem to get LF to work under win 2003 sp2, works flawlessly under 2008 R2.

 

Any ideas? I've checked the firewall(s), re-installed, etc. Test messages get generated and recorded in event manager but never get to the syslog server.

 

Thanks in advance.

Kiwi script works with Test button but not with live data

$
0
0

Hi all,

I have been trying to create a script that will capture duplicate log events and periodically spit to the display a modified entry preceded by an accurence. count.  I have included an output to display command within the script for debugging purposes The script is working as designed with the test data, but when live data come in, it appears to completely skip my script and go straight to the display action; the internal display in the script appears to not execute.

 

Attached is the script, very heavily modified from the script in the VPN SYSTEM item under content, altough I suspect it is not the script at fault.

 

On other caveat - the information in the live stream is Windows event log data from a SolarWinds log forwarder.

 

I would be grateful for any input.

 

 

Thank you,

Brian

Kiwi Web Access MS-SQL

$
0
0

Hi,

Is it possible that the Kiwi Web Access is using a MS-Standart SQL Server for his Database instead the max. 4GB version?

Thanks

Harzer


Kiwi with SQL Server: OK for high volumes of syslog? (> 500 megabytes / day) ?

$
0
0

Greetings!

We have a web app that generates a ton of internal diagnostic data. It dumps this data out to syslog, for us to analyze and look up later.

It is OK for some messages to be dropped. This is not critical data... it is useful data.

 

Questions:

Is kiwi plus SQL Server appropriate for this?

Does kiwi have a "search messages" api?

Where can I find the table schema, to do some testing on an actual SQL DB?

Can kiwi automatically purge out old data, based on data age or based on db size?

 

Thanks!

Kiwi Syslog not displaying Cisco ASA 5505 syslogs

$
0
0

I have a Cisco ASA 5505 that is setup to send syslogs to a remote syslog server.

I have kiwi syslog (free) installed on a Windows 2003 R2 Server and it is listening on UDP port 514. The syslog server also is my Ciscoworks v3.2 server.

I can ONLY see the Ciscoworks log files and not the ASA. I only want to display the ASA log files.

I have googled, read the user guide, and search the forum and cannot find any procedure that I can tweak Kiwi to log the syslog files from my ASA which is being used as a VPN concentrator.

Any ideas?

Kiwi syslog server external DB

$
0
0

Hello,

my kiwi web access database is 4gb great. And i have some timeout errors executing filters.

I am trying to use an external MSSQL DB with kiwi syslog server.

Is possible for Web access to use this external DB?

Thanks

Log Forwarder for Windows (available to all Kiwi customers on maint)

$
0
0

What it does:

Log Forwarder for Windows allows you to forward Windows events as Syslog to your Kiwi Syslog Server

  • Works on Windows XP, 2003, Vista, and 2008 (32-bit or 64-bit)
  • Provides .MSI version for silent installs, allowing use with remote software distribution systems (e.g., Microsoft SMS)
  • Enables definition of filters that describe which events are forwarded

How to get it:

If you download the Kiwi Syslog Server 9.0 from your customer portal, you will see there is an additional Log Forwarder executable included with your download.   The Log Forwarder for Windows was developed by the Kiwi Syslog team.  It is available at no cost to Kiwi Syslog customers current on maintenance.

Try it out and let us know what you think!

How to upgrade Kiwi syslog server 9.0.3 to current (9.2.0)

$
0
0

I cannot find instructions anywhere for the recommended method of upgrading.  Do I just run the setup?  What about the log forwarder?  The upgrade docs must be here somewhere and I just apparently am a failure when it comes to finding them.

Thanks.

Debbi

Kiwi Syslog Alert.

$
0
0

I need an alert when a message arrives containing the word "OSPF" or "STP", I want it to send an email to a group of ADM Network. There is that possibility?

Thanks =).

SW Log Forwarder for Windows....not getting what I think I should

$
0
0

I have SW LF4W installed on 3 2008R2 systems.  all 3 are DC's, I get log messages for successful account log ons from only one of the DC's in my kiwisyslog.  I have confirmed via the servers that they are all logging successful login's on their own but 2 of them are not sending the info to the syslog.  I have confimred that the LF4W is configured exactly that same on each of the DC's and I get other messages from all 3 just not all the login's.  My biggest issue I get ZERO account locked out messages from any of the DC's


Here is my general config for the LF4W

 

New Even Log Subscription

I have the following checked

Applicaion

Directory Service

HardwareEvents

Security

System

 

on the right side I have

Error / Warning / Inforamation all checked

Event Source is <All Event Sources>

Task Category is Enumerating Task Categories

 

On the Please Specify the default syslog priority for this subscription page

Default syslog facility : Kernal (messages)


Syslog configure to pull Exchange server message tracaking log

$
0
0

looking for a guide to configure syslog server with Exchange server to pull exchange message tracking logs into syslog server.

Kiwi syslog 9.4 on windows server 2012 64bit Service crash - Possible bug!

$
0
0

Hello , kiwi friends!

 

I am trying to get Kiwi syslog 9.4 to work on windows server 2012 64bit but having problems with the service crashing then i try to start the kiwi syslog server console.

I have applied the kb fix for Microsoft .Net Framework 2 , before that i couldnt install kiwi syslog successfully becuse the service could not start.

http://knowledgebase.solarwinds.com/kb/questions/4386/

 

 

I have the following errors in the windows event viewer!

Error 7000: The Kiwi Syslog Server service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion

Error 7009 : A timeout was reached (30000 milliseconds) while waiting for the Kiwi Syslog Server service to connect.

 

Do you have a solution for this or could it be a new bug in windows server 2012 and the old dot net framework combined ?

 

Thanks in advance.

Syslog service not starting after upgrading to Vipre AntiVirus 4.0

Kiwi Syslog not displaying Cisco ASA 5505 syslogs

$
0
0

I have a Cisco ASA 5505 that is setup to send syslogs to a remote syslog server.

I have kiwi syslog (free) installed on a Windows 2003 R2 Server and it is listening on UDP port 514. The syslog server also is my Ciscoworks v3.2 server.

I can ONLY see the Ciscoworks log files and not the ASA. I only want to display the ASA log files.

I have googled, read the user guide, and search the forum and cannot find any procedure that I can tweak Kiwi to log the syslog files from my ASA which is being used as a VPN concentrator.

Any ideas?

How to Split Log Files by IP Address and Date in Kiwi Syslog Server

$
0
0

SolarWinds's own Justin Finley just recorded a video tutorial that shows how to split logs into multiple files by IP address and date in Kiwi Syslog Server.  Specifically, this syslog server tutorial shows how to store logs in separate folders for each source IP address, and then shows how to keep separate log files for each day within those folders.  (e.g., "D:\logs\192.168.000.001\Log2012-07-13.txt")

 

 

External link to Jing: autosplit - justinfinley's library

 

Video Guide:

  • 0:00 Opening Kiwi Syslog's configuration dialog
  • 0:15 Using an "AutoSplit" variable of "IP Address (4 octets)" (%IPAdd4) in the log path to split logs by IP address
  • 0:40 Using an "AutoSplit" variable of "ISO Date" (%DateISO) in the log path to split logs by date

 

Remember to "LIKE" this if you find it useful - that helps other find it too!

Viewing all 15803 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>