Mailing List Archive

Issue with logs from fortigate
I am trying to parse and log a specific rule from my fortigate firewall and store in a database.
I have the rule file worked out
my issue is that some records have 40 fields and others have 44 even though it is the same policy it logs differently based on protocol

how can I do the template insert based on 2 different rules?

rsyslog mailing list
What's up with rsyslog? Follow
NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT.