[afnog] Central Logging on Debian

Phil Regnauld regnauld at nsrc.org
Thu Jul 8 12:55:24 UTC 2010


Andy Davidson (andy) writes:
> 
> Splunk is designed to make archiving/searching your logs a simple job.
> The project is open-source, but backed by a commercial company.

	Hi Andy,

	Where do you see that the product is open source ?

	There is a Free edition, which is binary only, is limited
	to 500 MB / day, and with a restricted feature set.

	It does look interesting, but I would definitely start by
	looking at rsyslog/syslog-ng, and then move to a commercial
	solution once the basics are understood and one has a good
	idea of the feature set required.

	Cheers,
	Phil




More information about the afnog mailing list