Sawmill
Download Sawmill 8.6.1
30 Days Free Trial
Home Products Downloads Purchase Support About About
Sawmill Sawmill

SAWMILLFORUM

Sawmill Discussion Forum

Subject: "Analysis of Citrix Netscaler logs produces empty report"     Previous Topic | Next Topic
Printer-friendly copy    
Conferences Support Topic #4690
Reading Topic #4690
woodster905
Member since Mar-18-13
1 posts
Mar-18-13, 10:27 AM (PDT)
Click to EMail woodster905 Click to send private message to woodster905 Click to view user profileClick to add this user to your buddy list  
"Analysis of Citrix Netscaler logs produces empty report"
 
   I work in security. I am attempting to audit connections to my companies VPN. My company uses Citrix NetScalers for the VPN. I can create a profile. sawmill detects the format as Citrix Netscaler but then says "No syslog detected". If I continue without selecting a syslog server I get an empty report. I talked with my IT security admin and he says they are using a generic Linux syslog server. If I select a generic syslog server I still get an empty report. Any suggestions?


  Alert | IP Printer-friendly page | Edit | Reply | Reply With Quote | Top
msgildenadmin
Member since Mar-6-13
1 posts
Mar-18-13, 12:22 PM (PDT)
Click to EMail msgilden Click to send private message to msgilden Click to view user profileClick to add this user to your buddy list  
1. "RE: Citrix Netscaler logs produces empty report"
In response to message #0
 
   LAST EDITED ON Mar-18-13 AT 12:23 PM (PDT)
 
From your log sample, the syslog header is not currently supported. We can add support for this. Can you give us some more details on the Linux distribution and syslog version.

msgilden
Sawmill Support

msgilden
Sawmill Support


  Alert | IP Printer-friendly page | Edit | Reply | Reply With Quote | Top
woodster905
Member since Mar-18-13
1 posts
Mar-18-13, 12:44 PM (PDT)
Click to EMail woodster905 Click to send private message to woodster905 Click to view user profileClick to add this user to your buddy list  
2. "RE: Citrix Netscaler logs produces empty report"
In response to message #1
 
   E-mailed syslog system admin for the requested info. Hope to hear back soon.


  Alert | IP Printer-friendly page | Edit | Reply | Reply With Quote | Top

Conferences | Topics | Previous Topic | Next Topic
© 2013 Flowerfire | Copyright | Privacy Policy | License Agreement | Terms of Use | Contact | Feedback | About
Sawmill Software
Sawmill Software
Back to Sawmill Home