Farina Ahmed Posted 23 Jan 2024 15:17
  
Yes, sending Sangfor NGAF logs to Elasticsearch or the ELK Stack (Elasticsearch, Logstash, and Kibana) is a common practice for centralized log management. To achieve this, you can use Logstash to collect, filter, and forward Sangfor NGAF syslog data to Elasticsearch. Configure Logstash with an input plugin to receive syslog messages, apply filters to parse and structure the data, and then use an output plugin to send the processed logs to Elasticsearch. Ensure that the necessary ports are open, and mappings are set up correctly in Elasticsearch to accommodate the NGAF log data. As for open-source alternatives to Kiwi Syslog, you might consider tools like Graylog, Fluentd, or syslog-ng, depending on your specific requirements and preferences. These platforms offer flexibility and scalability for managing logs from various sources.

I Can Help:

Change

Moderator on This Board

0
2
4

Started Topics

Followers

Follow

67
14
3

Started Topics

Followers

Follow

3
0
2

Started Topics

Followers

Follow

1
131
3

Started Topics

Followers

Follow

Board Leaders