Integration
-
Amazon Web Services (AWS) – Setting up integration with various services offered by AWS
-
Apache HTTP Server – Collecting and parsing messages from Apache’s error log and access log
-
Apache Tomcat – Collecting and parsing messages from Tomcat container log files
-
APC Automatic Transfer Switch – Configuring ATS logging and collecting the logs with NXLog
-
ArcSight Common Event Format (CEF) – Sending and receiving log data to and from ArcSight
-
Box – Pull events from Box
-
Bro Network Security Monitor – Using NXLog to collect logs from Bro
-
Brocade Switches – Configuring a Brocade switch to send logs and collecting the logs with NXLog
-
Check Point – Collecting logs from Check Point devices using the LEA protocol
-
Cisco ACS – Collecting and parsing logs from ACS devices
-
Cisco ASA – Configuring ASA logging and parsing the logs with NXLog
-
Cisco FireSIGHT – Collect events from FireSIGHT systems
-
Cisco IPS – Collect alerts from a Cisco Intrusion Prevention System
-
Cloud Instance Metadata – Adding instance metadata to events
-
Common Event Expression (CEE) – Sending and receiving CEE-formatted logs with NXLog
-
Dell EqualLogic – Configuring EqualLogic logging and extracting fields from the log data
-
Dell iDRAC – Configuring iDRAC logging and parsing the logs with NXLog
-
Dell PowerVault MD Series – Configuring PowerVault logging and collecting the logs with NXLog
-
DHCP Logs – Collecting logs from DHCP servers and clients
-
DNS Monitoring – Configuring DNS Server logging and parsing the logs with NXLog
-
Docker – Collecting logs from a Docker daemon or container
-
Elasticsearch and Kibana – Sending logs directly to Elasticsearch or to Logstash
-
F5 BIG-IP – Configuring BIG-IP logging and collecting the logs with NXLog
-
File Integrity Monitoring – Using NXLog to detect and log changes to files and directories
-
Graylog – Using NXLog as a collector for Graylog
-
HP ProCurve – Configuring logging on ProCurve devices and collecting the logs with NXLog
-
IBM QRadar SIEM – Integrating NXLog with IBM QRadar SIEM
-
Linux Audit System – Collecting Audit logs with NXLog
-
Linux System Logs – Using NXLog to collect system logs on Linux
-
Log Event Extended Format (LEEF) – Sending and receiving LEEF-formatted logs
-
McAfee Enterprise Security Manager (ESM) – Setting up McAfee ESM and sending events
-
Microsoft Active Directory Domain Controller – Collecting domain controller debug logs with NXLog
-
Microsoft Azure – Integrating NXLog with Azure services
-
Microsoft Exchange – Configuring and collecting several different types of Exchange logs
-
Microsoft IIS – Configuring and collecting various logs written by IIS
-
Microsoft SharePoint – Collecting several types of SharePoint logs with NXLog
-
Microsoft SQL Server – Collecting SQL Server logs, and reading from or writing to a database
-
Microsoft System Center Operations Manager – Setting up SCOM log collection
-
MongoDB – Collecting log data from a MongoDB database
-
Nessus Vulnerability Scanner – Parsing Nessus scan results with NXLog Enterprise Edition
-
NetApp – Configuring NetApp logging and collecting the logs with NXLog
-
.NET Application Logs – Adding logging functionality to a .NET application
-
Nginx – Collecting and parsing Nginx error and access logs
-
Okta – Pull events from Okta
-
Postfix – Configuring Postfix logging and collecting the logs with NXLog
-
Promise – Collecting Promise SAN logs with NXLog
-
RSA NetWitness – Sending logs to NetWitness with NXLog
-
SafeNet KeySecure – Collecting and parsing logs from KeySecure devices
-
Salesforce – Fetch events from Salesforce
-
Snare – Sending and receiving Snare-formatted logs with NXLog
-
Snort – Collecting and parsing Snort alert logs
-
Splunk – Forwarding log data to Splunk
-
Symantec Endpoint Protection – Collect virus alerts and audit events from an SEPM server
-
Synology DiskStation – Collecting logs from a DiskStation appliance
-
Syslog – Using the various Syslog formats with NXLog
-
Sysmon – Collecting, parsing, and filtering Sysmon events
-
Ubiquiti UniFi – Configuring UniFi logging; collecting and parsing the logs with NXLog
-
VMware vCenter – Collecting vCenter logs locally or remotely
-
Windows AppLocker – Collecting events generated by the AppLocker system
-
Windows Event Log – Collecting Windows Event Log data locally or remotely
-
Windows Firewall – Configuring and collecting various types of Windows Firewall logs
-
Windows Management Instrumentation (WMI) – Collecting events from WMI log files
-
Windows PowerShell – Using PowerShell scripts and logging PowerShell activity