The syslog-ng PE application can correlate log messages. Alternatively, you can also correlate log messages using pattern databases. For details, see Correlating log messages using pattern databases.
To group or correlate log messages that match a set of filters, use the grouping-by parser. This works similarly to SQL GROUP BY statements. For details, see Correlating messages using the grouping-by() parser.
You can correlate log messages identified using pattern databases. For details, see Correlating log messages using pattern databases.
© 2023 One Identity LLC. ALL RIGHTS RESERVED. Feedback Terms of Use Privacy