NXlog Enterprise Edition

Software Screenshot:
NXlog Enterprise Edition
Software Details:
Version: 2.8.1248
Upload Date: 17 Feb 15
Developer: Botond Botyanszki
Distribution Type: Freeware
Downloads: 65

Rating: nan/5 (Total Votes: 0)

NXlog Enterprise Edition is a commercial, universal, modular and multiplatform command-line software project written in C and designed from the offset to act as a log collector and forwarder utility that supports popular log protocols and it's compatible with all mainstream operating systems.

Features at a glance

As expected, a paid edition of any software brings a wide variety of features that are not present in the standard, freely distributed edition. These include a high-performance, scalable and multi-threaded I/O that can be used for collecting messages at faster speeds, support for scheduling tasks, built-in rotation of logs, as wlel as a modular architecture.

Additionally, the software comes with support for a wide range of log sources and protocols, including Graylog2 GELF, XML, CSV (Comma Separated Value), Windows EventLog, Syslog and JSON, pattern matching support, event classification support, and secure network transport over SSL (Secure Sockets Layer).

Based on dynamically loadable plugins

As mentioned, the program offers a powerful plugin architecture based on dynamically loadable plugins that will enhance the software's default functionality. Among other interesting features, we can mention log message buffering, event classification, log message prioritization, rewrite of log messages, conversion between multiple log file formats, and an offline processing mode for conversions, post processing and transfers operations.

A simple configuration format is used for storing options. Several command-line options are available and can be viewed at a glance by running the ‘nxlog --help’ command in any console environment.

Supported on Linux, Android, AIX, HP-UX, BSD, Solaris and Microsoft Windows

Similar to the Community edition, the Enterprise edition of NXlog is also cross-platform, supported on a wide range of computer or mobile operating systems, including GNU/Linux, AIX, Microsoft Windows, Solaris, AIX, BSD, HP-UX, as well as Android. It has been successfully tested on both 64-bit and 32-bit hardware architectures.

What is new in this release:

  • The rename_field() procedure was removing the field if the source and destination were the same.
  • The regexp and regexp replacement operators can now be used as statements, i.e. Exec $Message =~ s/aaa/bbb/;
  • Regular expressions now support the /m modifier to do multiline matching.
  • Regular expressions now support the /i modifier to do caseless matching.
  • Regular expressions now support the /s modifier to make the '.' match newline characters.
  • Fixed a regression introduced with the ActiveFiles directive in im_file when more than one truncation
  • did not get noticed. (ticket #40@sf) Credits go to 'savionat'.
  • Implemented missing parser support for IPv4 literals.
  • Added a host_ip() function to return the IP address associated with the hostname.
  • Using exec_async() could have exhausted the memory if it was called at a very high rate.
  • om_udp would stop sending messages in some cases after logging "apr_socket_send failed;Connection refused",
  • e.g. when graylog2 was not accepting udp packets. It should properly resume now.
  • The to_syslog_snare() formatter should now produce better snare compliant output.
  • Replace space, ']' and '"' with underscore in IETF syslog structured data field names.
  • Context cleaning would result in a segfault in pm_evcorr's thresholded rule if there was no triggering.
  • im_tcp and im_ssl on windows is not limited to 500 connections anymore.
  • Non-wildcarded File contents would get lost with ReadFromLast FALSE when the file did not exist
  • but did appear with unread data.
  • im_file does not emit "input file does not exist" warnings at every PollInterval.
  • The file_name() function caused assertion failures in some cases on shutdown.
  • A regression caused a crash with im_file when the File did not exist.
  • A typo in the code was causing a memory leak with rename_field().

What is new in version 2.7.1189:

  • The LICENSE has changed.
  • Added a new extension module to parse binary wtmp files on Linux.
  • Fixed a regression causing a crash after the 'failed to determine FQDN hostname' error message.
  • The to_syslog_*() procedures can now use $raw_event if $Message is unset to make it easier to convert to syslog.
  • Added a fix to im_msvistalog to handle the "EvtNext failed with error 13: The data is invalid." error better.
  • The im_file module now emits the last event when using with the xm_multiline extension.
  • Fixed the issue with more than 20 fiels and xm_multiline reported in ticket #33.
  • Json parse errors in raw_event could cause a double free resulting in a crash or undefined behavior.
  • It is now possible to use multiple instances of xm_perl.
  • Disallow using a single processor module instance in multiple routes.
  • The file_chown() procedure in xm_fileop works with user/group names in addtion to uid/gid values.
  • CloseWhenIdle directive for im_file.
  • File removal in some circumstances caused im_file to emit "input file does not exist" messages on windows.
  • In same rare cases im_file would give a panic on windows with "im_file got EAGAIN for read".
  • The regexp replacement operator s/// was leaking memory.
  • In some circumstances excess CPU was used when im_file watched several files.
  • Added some more performance optimizations to im_file to handle a large number of wildcarded files
  • so that it should consume less resources than before. It also comes with a new DirCheckInterval and
  • an ActiveFiles directive which can help in some cases when monitoring wildcarded files.
  • Added a RenameCheck directive to im_file which should help detecting renamed/rotated files.
  • The deb installer got stuck after trying to (re)start the daemon.

Similar Software

CFAnalyze
CFAnalyze

20 Feb 15

Admin
Admin

20 Feb 15

log_analysis
log_analysis

14 Apr 15

Other Software of Developer Botond Botyanszki

Nxlog
Nxlog

21 Jan 15

Comments to NXlog Enterprise Edition

Comments not found
Add Comment
Turn on images!