Forum Discussion
reda21
Nov 06, 2020Copper Contributor
Dataloss in transfer between syslog and Azure LogAnalytics
We're experiencing an issue where we lose data between our syslog server data and the results in Sentinels LogAnalytics. Our configuration writes syslog messages to a file /var/syslog_data. This ...
reda21
Nov 06, 2020Copper Contributor
JKatzmandu thanks for your reply, could you guid me to any information options or documentation which have info on how to configure the OMS agent to read the file directly?
JKatzmandu
Nov 06, 2020Brass Contributor
reda21 Once the agent is installed (which it is) you tell it to read a flat log file. It's basically like this:
https://docs.microsoft.com/en-us/azure/azure-monitor/platform/data-sources-custom-logs