Graylog 6: The Best Open Source Logging Tool Got Better!

Published 2024-05-25
lawrence.video/

Graylog install tutorial
   • Graylog: Your Comprehensive Guide to ...  

Step-by-Step Guide: Sending Windows Event Logs to Graylog With NXLOG
   • Step-by-Step Guide: Sending Windows E...  

Understanding Sysmon & Threat Hunting with A Cybersecurity Specialist & Incident Detection Engineer
   • Understanding Sysmon & Threat Hunting...  


Changelog
go2docs.graylog.org/current/changelogs/changelog.h…




Connecting With Us
---------------------------------------------------
+ Hire Us For A Project: lawrencesystems.com/hire-us/
+ Tom Twitter 🐦 twitter.com/TomLawrenceTech
+ Our Web Site www.lawrencesystems.com/
+ Our Forums forums.lawrencesystems.com/
+ Instagram www.instagram.com/lawrencesystems/
+ Facebook www.facebook.com/Lawrencesystems/
+ GitHub github.com/lawrencesystems/
+ Discord discord.gg/ZwTz3Mh

Lawrence Systems Shirts and Swag
---------------------------------------------------
►👕 lawrence.video/swag/


AFFILIATES & REFERRAL LINKS
---------------------------------------------------
Amazon Affiliate Store
🛒 www.amazon.com/shop/lawrencesystemspcpickup

UniFi Affiliate Link
🛒 store.ui.com/?a_aid=LTS

All Of Our Affiliates that help us out and can get you discounts!
🛒 lawrencesystems.com/partners-we-love/

Gear we use on Kit
🛒 kit.co/lawrencesystems

Use OfferCode LTSERVICES to get 10% off your order at
🛒 www.techsupplydirect.com/?aff=2

Digital Ocean Offer Code
🛒 m.do.co/c/85de8d181725

HostiFi UniFi Cloud Hosting Service
🛒 hostifi.net/?via=lawrencesystems

Protect you privacy with a VPN from Private Internet Access
🛒 www.privateinternetaccess.com/pages/buy-vpn/LRNSYS

Patreon
💰 www.patreon.com/lawrencesystems


Chapters
00:00 Graylog 6
01:16 Graylog Open vs Other Versions
02:24 Indice Retention Changes
03:14 New Custom HTTP Alerts
03:55 Updated Dashboard and Search
05:58 Production Log Storage
08:13 Graylog Install Tutorial
08:30 Window

All Comments (21)
  • @RaidOwl
    Tom makes me want to implement Graylog but my laziness overpowers it every time.
  • @Joshko82
    Awesome video Tom. I truly appreciate all the efforts you put into creating high quality, focused and easy to understand content. Also looking especially to the non-paid version here makes sense, since many smaller companies do not have these big budgets!
  • @nivideus
    Great summary video! I was just looking at graylog, this is great timing. Lots of threads to explore, thank you. I am using proxmox to manage my NFS mounts which are passed to Docker like you are, but I struggle with the situation where the mount is there but empty if the NAS is unreachable for any reason, causing some services to regard data as "deleted" which can cause quite a bit of chaos. I'd like to store my logs remotely like you are, but I'm not sure about how this scenario will affect graylog. How do you handle this in your setup? Is there some way to guard against it or suspend containers that depend on the share?
  • @kolt9307
    Moved from Graylog to Grafana Loki, never looked back. Damn elastic shards are just a pain
  • @scratius
    Thanks for the review, Tom. Informative as always. Graylog is a wonderful tool.
  • @pproba
    Thanks for the video. I would be very much interested in a comparison between the most popular log management solutions for homelabbers. Any chance you might be working on such a comparison in the future?
  • @ehh54
    Graylog is not open source it’s using the Server Side Public License its a source available license. If I am choosing software to use at work I always try to use projects where you can buy support for open source version. Getting rug pull is never fun have seen it so many times with closed source monitoring software.
  • @double_DD
    are there any plans on testing and making a video of WAZUH SIEM? It would be very nice if you would do so.
  • @EViL3666
    I've long had a soft spot for Graylog... but alas, the Splunk dev license makes it too easy..
  • Will your Greylog update video still work to get onto this newest version?
  • Hi Lawrence, how can I apply HTTPS or Let's Encrypt for a Docker Graylog instance? thanks
  • @user-nf7xi8xi4t
    Can i get more than 2 lakh log lines at a time in gray cloud ??
  • @WeathermanMark1
    Unfortunately I'm running an older server for my virtual environment with CPUs that don't support MongoDB's AVX requirement. I wish MongoDB had a legacy switch for older hardware or we could use a different DB.
  • @lindhe
    Last I looked at Graylog, I recall being deterred by them depending on some deprecated version of a database. Know what I'm talking about? Is that fixed now?