Skip to content

rsyslog

The rocket-fast system for log processing

  • PROJECT
    • News Releases
    • Features
    • Plugins
    • ChangeLogs
    • Security Advisories
  • HELP
    • Guides for rsyslog
    • Documentation
    • Support
    • FAQ
    • Video Tutorials
  • TOOLS
    • Config builder
    • Impstats Analyzer
    • RainerScript Constant String Escaper
    • Regex
  • SERVICES
    • Enterprise Support
    • Custom Development
  • WINDOWS AGENT
    • About Rsyslog Windows Agent
    • Edition Comparison
    • Order Now
    • Support Contract – Windows Agent
    • Manual
    • Support
    • Windows Agent Download
    • Guides for Windows Agent
    • RSyslog Windows Agent license document – EULA
  • AWS Offering
  • PROJECT
    • News Releases
    • Features
    • Plugins
    • ChangeLogs
    • Security Advisories
  • HELP
    • Guides for rsyslog
    • Documentation
    • Support
    • FAQ
    • Video Tutorials
  • TOOLS
    • Config builder
    • Impstats Analyzer
    • RainerScript Constant String Escaper
    • Regex
  • SERVICES
    • Enterprise Support
    • Custom Development
  • WINDOWS AGENT
    • About Rsyslog Windows Agent
    • Edition Comparison
    • Order Now
    • Support Contract – Windows Agent
    • Manual
    • Support
    • Windows Agent Download
    • Guides for Windows Agent
    • RSyslog Windows Agent license document – EULA
  • AWS Offering

Guides

Basic Configuration

This first section will describe some basic configuration. Here you will not find complete configurations, but snippets on how to use different modules correctly and some description on how they are working.

  • Newbie guide to RSYSLOG

  • Installing RSYSLOG from RPM

  • Sending messages with tags larger than 32 characters

  • Using the syslog receiver module

  • Using the Text File Input Module

Some core configs

This section contains some basics. Things, that are used ever and ever again. It also contains some more in-depth description of what rsyslog does and why. It is recommended to at least briefly read through this part before going to more complex scenarios.

  • TLS secured syslog via RELP

  • Action’s with directives

  • Writing specific messages to a file and discarding them

  • Sending Messages to a Remote Syslog Server

  • Receiving Messages from a Remote System

  • Using a different log Format for all Files

  • Discarding unwanted messages

More complex scenarios

  • RSYSLOG and ElasticSearch

  • Parsing JSON (CEE) Logs and Sending them to Elasticsearch

  • Using TLS with RELP

  • Log normalization for different formats

  • Using MongoDB with RSYSLOG and LogAnalyzer

  • Normalizing Cisco ASA messages

  • Receiving CEE enhanced syslog in RSYSLOG

  • Storing and forwarding remote messages

  • How to write to a local socket?

  • Storing Messages from a Remote System into a specific File

  • Integration with “standard” syslogd

Current Version

daily stable build (Ubuntu)
daily stable build (CentOS)

8.2504.0 [doc] [download]

next: 8.2506.0, June 2025

rsyslog docker container

[packages and older versions]

Windows Agent: 8.0 [download]

Recent Posts

  • How To Export the Configuration and Create a Debug Log File
    This Article describes you how you can export the ...
  • RSyslog Windows Agent 8.0 Released
    Release Date: 2025-01-23 Build-IDs: Service 8.0.0. ...
  • RSyslog Windows Agent 7.5c Released
    Release Date: 2024-10-06 Build-IDs: Service 7.5.0. ...
  • What to do when an External Script does not work?
    When a script runs fine interactively but fails in ...

COMMUNITY

  • Mailinglist
  • Github

About

  • About Adiscon / Impressum
  • Contact Us
  • Privacy policy / Datenschutzrichtlinien
  • Rainer's Blog

Related Products

  • LogAnalyzer
  • WinSyslog

Copyright © 2008-2020 Adiscon GmbH. Theme: Zakra By ThemeGrill.

Scroll to top
rsyslog.com uses cookies to ensure that we give you the best experience on our website. If you continue to use this site, you confirm and accept the use of Cookies on our site. You will find more informations in our Data Privacy Policy.OkRead more