Hostname field for log/alert events

25 views
Skip to first unread message

Berend

unread,
Dec 23, 2022, 4:38:16 PM12/23/22
to sagan-users
Greetings,


is there a setup where Sagan would include the hostname in alerts or log events? SyslogNG can seem to use hostnames in the pipe to Sagan, but aside from dns-warnings on the 'console' they do not show up in the output (eve-log, fast.log, alert.log). The syslog-source or alert src-ip fields check out but the host field is always the processors name.

Maybe there is a better setup?


Berend
Reply all
Reply to author
Forward
0 new messages