Jump to content

Anyone here familiar with Graylog?

I'm having an issue at the moment with a timezone issue on my Graylog server and I really cannot figure out the issue. Anyone familiar with it?

My Gaming Rig: AMD Ryzen 5600x  |  Corsair H100i GTX  |  ASUS ROG Strix B450-F Gaming  |  32GB Samsung DDR4 3600MHz  |  ASUS RTX 3070 ROG Strix  |  WD Black 240GB NVMe  |  1TB Samsung 850 Pro SSD | 2TB Samsung Enterprise SSD  |  WD Black 1.5TB   |  3x NZXT Aer RGB 140MM  |  Seasonic Focus 750w   |  NZXT H500 Elite   |  Windows 10 Pro

 

My Home Server: AMD Ryzen 1400x  |  Gigabyte Aurora B550 Elite  |  32Gb Samsung DDR3 3200Mhz  |  HP RTX 2060 6GB  |  1TB Samsung 850 Pro  |  2x Seagate IronWolf Pro 18TB | 3x Seagate IronWolf Pro 4TB |  2x WD Green 2TB  |  Corsair CX650m  | Bitfenix Shinobi | Windows Server 2022

Link to comment
Share on other sites

Link to post
Share on other sites

Graylog uses per user time zones. Maybe you set them wrong? What's even the issue?

Link to comment
Share on other sites

Link to post
Share on other sites

The original issue was that messages were coming in extremely slowly, and these messages were about 24 hours behind! So I could see log messages that were related to issues/tasks that happened 24hr ago.

I actually found the issue, it was actually a DNS issue with my VPN provider. I can only assume the server/application could not resolve the timezone?

 

It also looked like over 200k messages were being stored in the Graylog queue (the part of the architecture before the logs get written to Elasticsearch)? When I fixed the DNS issue, thousands of messages started flowing in and the issue is fully resolved.

 

Super strange ?

My Gaming Rig: AMD Ryzen 5600x  |  Corsair H100i GTX  |  ASUS ROG Strix B450-F Gaming  |  32GB Samsung DDR4 3600MHz  |  ASUS RTX 3070 ROG Strix  |  WD Black 240GB NVMe  |  1TB Samsung 850 Pro SSD | 2TB Samsung Enterprise SSD  |  WD Black 1.5TB   |  3x NZXT Aer RGB 140MM  |  Seasonic Focus 750w   |  NZXT H500 Elite   |  Windows 10 Pro

 

My Home Server: AMD Ryzen 1400x  |  Gigabyte Aurora B550 Elite  |  32Gb Samsung DDR3 3200Mhz  |  HP RTX 2060 6GB  |  1TB Samsung 850 Pro  |  2x Seagate IronWolf Pro 18TB | 3x Seagate IronWolf Pro 4TB |  2x WD Green 2TB  |  Corsair CX650m  | Bitfenix Shinobi | Windows Server 2022

Link to comment
Share on other sites

Link to post
Share on other sites

I am very experienced with Elasticsearch and Logstash, from what I've seen Graylog isn't too different. What's up?

 

Edit: Sorry should have read the whole thread :)

System/Server Administrator - Networking - Storage - Virtualization - Scripting - Applications

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×