Hi,
Is it possible that the Kiwi Web Access is using a MS-Standart SQL Server for his Database instead the max. 4GB version?
Thanks
Harzer
This is still an open request for logging to for the Kiwi web access DB.
However, here is what I recommend you do.
Deploy Kiwi Syslog and have all firewalls log to it. Create a rule and have an action defined to have all items logged to an external SQL database.Create another action to log all items to the Kiwi web site.
Now you have all your items logged to the SQL DB for auditing. You can view these in the Kiwi win32 UI.
Also we will store up to 4GB in the web console DB for viewing, filtering and searching. The web DB can hold a max of 4GB and then they begin to purge out automatically as we use SQL CE.
Hope that helps and removes some of the confusion.
Not currently, this is an open enhancement request we have currently
hi there
any movement on this? if i want to plug kiwi into a full SQL server, can i do this? or is it free sql only?
I am deploying kiwi to collect syslog from 10 major firewalls. i am ging to send ALL logs to the kiwi box and keep them for a long time for compliance... i was thinking a big SQL server would be be best place for searching, filtering etc...
am i better to just stick with a 100GB of local storage and store it as text?
cheers
dan
awesome reply, thank you, really appreciated hit
will get the PO in this week! brilliant... (of course the customer might go cheap and just stick everything in a text file but that worries be in terms of corruption and prformance for audit-time
You're right we have a MS SQL database on an external DB server. But you can not search in the past with the Kiwi win32 UI. E.g. you looking for an issue 21 or more days’ ago that's only possible to using the web interface. For this thinks I use the Database search native in the moment and this is not the good solution for this software.
Hello
I configured Kiwi syslog 9.2 as you discribed, then how
do I confirm that kiwi syslog does output logs to
newly implemented SQL server ?
I have not removed SQL compact and timestamp of both compact
and SQL 2008 folders updated as new log arrives.