Solved

Centralized logging Linux/Windows/Services/Networking

Posted on 2012-04-01
10
230 Views
Last Modified: 2014-08-01
Looking to get opinions on different centralized logging systems, open-source to commercial. Would like to be able to log services(tomcat, apache, mysqld), applications java, grails, networking equipment, squid etc. Wondering what experience people have with different products.
0
Comment
Question by:syscrash
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
10 Comments
 
LVL 21

Expert Comment

by:motnahp00
ID: 37793818
I cannot comment on Linux and networking equipment, but Windows allows for event log forwarding for a centralized solution.
0
 
LVL 10

Accepted Solution

by:
Netty earned 125 total points
ID: 37794155
Look at Splunk http://www.splunk.com/
0
 
LVL 1

Author Comment

by:syscrash
ID: 37794194
Looked at splunk, it looks pretty good. Looking for opinions from people who have used it in an enterprise environment.
0
Portable, direct connect server access

The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

 
LVL 21

Expert Comment

by:motnahp00
ID: 37794198
We have TripWire, but the admin never figured out how to get it running properly.
0
 
LVL 7

Assisted Solution

by:torakeshb
torakeshb earned 125 total points
ID: 37794351
0
 
LVL 17

Assisted Solution

by:pergr
pergr earned 125 total points
ID: 37794878
If you just want to collect logging, then syslog-ng and kiwi (mentioned above) are the obvious ones.

If you also want to actively monitor devces, software, functionality, etc, then also have a look at Nagios, Zenoss and OpenNMS.
0
 
LVL 57

Assisted Solution

by:giltjr
giltjr earned 125 total points
ID: 37799019
I've used syslog-ng, kiwi, and splunk.

The advantage of splunk is it can do indexing so that searches can run real fast.  The dis-advantage is that if you log more than 500MB in a day, you have to pay in order for it to do the indexing.
0
 
LVL 1

Author Comment

by:syscrash
ID: 37799060
Any experiences with rsyslog + loganalyzer ?

Pros/cons?
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question