Centralized logging Linux/Windows/Services/Networking

Looking to get opinions on different centralized logging systems, open-source to commercial. Would like to be able to log services(tomcat, apache, mysqld), applications java, grails, networking equipment, squid etc. Wondering what experience people have with different products.
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

I cannot comment on Linux and networking equipment, but Windows allows for event log forwarding for a centralized solution.
Sergsystem administratorCommented:
Look at Splunk http://www.splunk.com/

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
syscrashAuthor Commented:
Looked at splunk, it looks pretty good. Looking for opinions from people who have used it in an enterprise environment.
SolarWinds® VoIP and Network Quality Manager(VNQM)

WAN and VoIP monitoring tools that can help with troubleshooting via an intuitive web interface. Review quality of service data, including jitter, latency, packet loss, and MOS. Troubleshoot call performance and correlate call issues with WAN performance for Cisco and Avaya calls

We have TripWire, but the admin never figured out how to get it running properly.
If you just want to collect logging, then syslog-ng and kiwi (mentioned above) are the obvious ones.

If you also want to actively monitor devces, software, functionality, etc, then also have a look at Nagios, Zenoss and OpenNMS.
I've used syslog-ng, kiwi, and splunk.

The advantage of splunk is it can do indexing so that searches can run real fast.  The dis-advantage is that if you log more than 500MB in a day, you have to pay in order for it to do the indexing.
syscrashAuthor Commented:
Any experiences with rsyslog + loganalyzer ?

It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today

From novice to tech pro — start learning today.