NXlog to SO #15862
Unanswered
CyberC3nturion
asked this question in
2.4
NXlog to SO
#15862
Replies: 1 comment 2 replies
-
|
How are you sending to SO and in what format? |
Beta Was this translation helpful? Give feedback.
2 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Version
2.4.201
Installation Method
Security Onion ISO image
Description
configuration
Installation Type
Standalone
Location
on-prem with Internet access
Hardware Specs
Exceeds minimum requirements
CPU
8
RAM
32gb
Storage for /
1.5TB
Storage for /nsm
5TB
Network Traffic Collection
tap
Network Traffic Speeds
1Gbps to 10Gbps
Status
Yes, all services on all nodes are running OK
Salt Status
No, there are no failures
Logs
No, there are no additional clues
Detail
I currently have an NXlog server porting logs to both Qradar and SO. I'm having issues with parsing the logs into SO. I see logs but they are just a strand of data. Is there way I can convert to JSON without affecting the Qradar log ingest?
Thank you
Guidelines
Beta Was this translation helpful? Give feedback.
All reactions