External syslog for pfSense


#1

Please share your recommendations for open source external web based syslogger (for Ubuntu).

Thx


#2

I’ve also been considering a centralized syslog server for my home network. As it stands now, It’s a pain in the butt the troubleshoot across several servers and VMs to fix problems. So I would also be interested in some recommendations.


#3

Maybe @LTS_Tom would consider a youtube video :slight_smile:


#4

@drowsy
I finally got tired of pfsense sysloggig - this is my last drop https://forum.netgate.com/topic/140137/how-long-entry-should-be-found-in-the-logs/8
and setup an external log system https://www.splunk.com/ (anybody has better recommendations?)

Here are some links to get started if you are interested:


Installation and setup was very easy.

Now how to use splunk? – that’s a different story, but I hope we will be able to figure it out :slight_smile:


#5

Alright cool thanks, I’ll check out Splunk. I’ve been trying to set up a Syslog server on my FreeNAS server, but the VM support is failing me. Or maybe I’m just doing something very, very wrong.

I wish there was a plugin available for a bootstrap syslog server… :thinking:


#6

We use Splunk at work, the people who use it more seem to like it, but there is a learning curve to configure your queries to get useful info.


#7

ELK stack works great, guides out there for pfsense + ELK stack. Graylog is another popular solution.


#8

Look in the Splunk apps many free apps that might fix your needs. RTFM