HansdeJongh's Posts

well i tried that this afternoon, i added a source in DNS. its still not being resolved. Yes we are talking about the source field.
Hello, I would like to request AD authentication and also the possibilty to give access to certain sources only. Regards Hans
nope, but let me chekc something i have an ip which hasnt got a dns name yet. Ill give it one now. How fast before the appliance should show it as the source?
yes i know of that. but we are talking about 100.000 messages with souce=ip and then suddenly it changed to source=dns
as far as i can tell it only happens with esxhosts. I have multple switches, sans, routers in it and they all are or showing an ip or showing a dns name...
hmm i might have logged in to the shell and did a nslookup / reversed for the dns / ip address... around that time
well this is bizar... since 13:00 (5 minutes after i posted this message) it started to show up with the dns name. There havent been a single ip as source message anymore......
Hello, I have 2 os's that im monitoring. Both are resovable But within vcenter log insight only one shows up as a source with the DNS name and the other one with its IP address. What am i ... See more...
Hello, I have 2 os's that im monitoring. Both are resovable But within vcenter log insight only one shows up as a source with the DNS name and the other one with its IP address. What am i doing wrong? Regards Hans
its only these messages that show up with an IP as source. all the other messages show up with the dnsname as source
hi, im running eval.. what kind of screenshot would you like? its kinda hard to see as you have to hoover over it to see the ip's/hostnames..
ok, pfsense have created a fix for me. So ill mark this as answered.
btw, in base its a pfsense issue..http://redmine.pfsense.org/issues/1938
Hi, Atm we use splunk to monitor our pfsense boxes. It would be very nice if we could do that with vcenter log insight. But the problem is this: pfsense send out the following: Se... See more...
Hi, Atm we use splunk to monitor our pfsense boxes. It would be very nice if we could do that with vcenter log insight. But the problem is this: pfsense send out the following: Sep 9 15:26:46 pf: 192.168.99.8.64592 > 80.239.205.210.80: Flags [S], cksum 0x263b (correct), seq 3949330011, win 8192, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0 Sep 9 15:26:46 pf: 00:00:03.010545 rule 1/0(match): block in on em1: (tos 0x0, ttl 128, id 2486, offset 0, flags [DF], proto TCP (6), length 52) vcenter log insight shows: 2013-09-09 15:26:46.621 Sep 9 15:26:46 pf: 192.168.99.8.64592 > 80.239.205.210.80: Flags [S], cksum 0x263b (correct), seq 3949330011, win 8192, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0    priority   facility   source   hostname   appname        2013-09-09 15:26:46.621 Sep 9 15:26:46 pf: 00:00:03.010545 rule 1/0(match): block in on em1: (tos 0x0, ttl 128, id 2486, offset 0, flags [DF], proto TCP (6), length 52)    priority   facility   source   hostname   appname But splunk shows a much nicer 9/9/13 3:26:44.000 PM  Sep  9 15:26:44 193.186.36.81 Sep  9 15:26:46 pf: 00:00:03.010545 rule 1/0(match): block in on em1: (tos 0x0, ttl 128, id 2486, offset 0, flags [DF], proto TCP (6), length 52)Sep  9 15:26:44 193.186.36.81 Sep  9 15:26:46 pf:     192.168.99.8.64592 > 80.239.205.210.80: Flags [S], cksum 0x263b (correct), seq 3949330011, win 8192, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0host=193.186.36.81   Options|  sourcetype=pfsense-firewall   Options|  source=udp:514   Options|  dest_ip=80.239.205.210   Options|  dest_port=80   Options Now the problem is that if i search for example on 80.239.205.210 it will only show: 2013-09-09 15:26:46.621 Sep 9 15:26:46 pf: 192.168.99.8.64592 > 80.239.205.210.80: Flags [S], cksum 0x263b (correct), seq 3949330011, win 8192, options [mss 1460,nop,wscale 8,nop,nop,sackOK], length 0    priority   facility   source   hostname   appname is there a way to change that..??? Thanks! Regards Hans
Hello, When i look on my dashboard and look at toal events by hostname is see alot more "devices"  then i am monitoring. Thats cause my devices sometimes show up twice. Once with their IP and... See more...
Hello, When i look on my dashboard and look at toal events by hostname is see alot more "devices"  then i am monitoring. Thats cause my devices sometimes show up twice. Once with their IP and once with their Hostname. How will this work with licensing? Is it based on ip's?
Hello, Is it possible to upgrade from beta to the GA version? Regards hans
Hello, It would be nice if its possible to choose how many items you want to see in a "view" now you only see 50. I would like to be able to choose how many i see. Besides that it would be... See more...
Hello, It would be nice if its possible to choose how many items you want to see in a "view" now you only see 50. I would like to be able to choose how many i see. Besides that it would be bice to also have the page selection at the top (now only at the bottow) Thanks!
yes that is correct.
First of all.... couldnt you guys have done this like 6 months ago. Now i have a worthless splunk license;) Great product! i`m missing the realtime "time range" in the interactive analytics... See more...
First of all.... couldnt you guys have done this like 6 months ago. Now i have a worthless splunk license;) Great product! i`m missing the realtime "time range" in the interactive analytics? Would that be possible?
Hello, I would like to forward all the tasks and events logs that can see in the vsphere client. and i mean ONLY those logs. I know how to configure forwarding all esx logs to a syslog server... See more...
Hello, I would like to forward all the tasks and events logs that can see in the vsphere client. and i mean ONLY those logs. I know how to configure forwarding all esx logs to a syslog server. But i just want those tasks and events logs to be forwarded. Thanks...
Hello, We have a customer currently deploying a (800 users) Microsoft Dynamics AX 2012 R2 environment. We want to run this on a vsphere 5.1 U1 environment but the customer is told by Microsof... See more...
Hello, We have a customer currently deploying a (800 users) Microsoft Dynamics AX 2012 R2 environment. We want to run this on a vsphere 5.1 U1 environment but the customer is told by Microsoft and Dynamic partners that vmware + dynamics is a bad combination. They are told that hyperv is much better. I`m looking for ppl who have deployed AX 2012 (r2) on vmware and iscsi storage. Could you please share which tweaks you have in place? We want to run the ax servers and the sql servers on the same physical hw. We already have the fasted intel proc available. We have 10GB network in place (force10, S4820T) and have 10gb san's (equallogic 2x PS6110XV in raid10). All tips are welcome but if you could explain the "why" that would help me alot. We also want to put the AX temp directory and the SQL temp directory on a FusionIO card or SSD drivers.. Thanks alot