Open aoliver13 opened 5 years ago
Command alerter with logger works fine here, but I needed to spoof the hostname in the syslog header. So I have been using pysyslogclient for a long time now, works like a charm.
Command alerter with logger works fine here, but I needed to spoof the hostname in the syslog header. So I have been using pysyslogclient for a long time now, works like a charm.
Can you give me some steps to use this? I am trying to use ElastAlert2's "command" alert module to send log to a remote syslog server.
here are the config rules I tried.
command: ["/usr/bin/logger", "-n", "my_remote_server_ip", "-t", "elastalert"]
pipe_match_json: true
What happened to the syslog alerter? I see at one point it may have been merged but no longer appears to be an option or note in documentation?
Has anyone been able to successfully using command and logger to send to a remote syslog server?