Our compliance folks mandate a retention of 2 years for Syslog events and our Syslog table in Orion has grown beyond belief. It contains close to 200 million rows!
We are looking into serious log management solutions, and expect to get there within the year, but we need to do something in the meantime to reduce the size of that table.
In the meantime, I'm wondering what is the best option to archive the contents of the Syslog table before purging it. The main consideration is for saving the table in a format that would be reasonably easy to import into a log management tool.
Has anyone successfully done something like this?