Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Centralized logging Linux/Windows/Services/Networking

Posted on 2012-04-01
10
227 Views
Last Modified: 2014-08-01
Looking to get opinions on different centralized logging systems, open-source to commercial. Would like to be able to log services(tomcat, apache, mysqld), applications java, grails, networking equipment, squid etc. Wondering what experience people have with different products.
0
Comment
Question by:syscrash
10 Comments
 
LVL 21

Expert Comment

by:motnahp00
ID: 37793818
I cannot comment on Linux and networking equipment, but Windows allows for event log forwarding for a centralized solution.
0
 
LVL 10

Accepted Solution

by:
Netty earned 125 total points
ID: 37794155
Look at Splunk http://www.splunk.com/
0
 
LVL 1

Author Comment

by:syscrash
ID: 37794194
Looked at splunk, it looks pretty good. Looking for opinions from people who have used it in an enterprise environment.
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 21

Expert Comment

by:motnahp00
ID: 37794198
We have TripWire, but the admin never figured out how to get it running properly.
0
 
LVL 6

Assisted Solution

by:torakeshb
torakeshb earned 125 total points
ID: 37794351
0
 
LVL 17

Assisted Solution

by:pergr
pergr earned 125 total points
ID: 37794878
If you just want to collect logging, then syslog-ng and kiwi (mentioned above) are the obvious ones.

If you also want to actively monitor devces, software, functionality, etc, then also have a look at Nagios, Zenoss and OpenNMS.
0
 
LVL 57

Assisted Solution

by:giltjr
giltjr earned 125 total points
ID: 37799019
I've used syslog-ng, kiwi, and splunk.

The advantage of splunk is it can do indexing so that searches can run real fast.  The dis-advantage is that if you log more than 500MB in a day, you have to pay in order for it to do the indexing.
0
 
LVL 1

Author Comment

by:syscrash
ID: 37799060
Any experiences with rsyslog + loganalyzer ?

Pros/cons?
0

Featured Post

Master Your Team's Linux and Cloud Stack!

The average business loses $13.5M per year to ineffective training (per 1,000 employees). Keep ahead of the competition and combine in-person quality with online cost and flexibility by training with Linux Academy.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A procedure for exporting installed hotfix details of remote computers using powershell
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Connecting to an Amazon Linux EC2 Instance from Windows Using PuTTY.
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question