Why do log management teams choose AxoSyslog vs. syslog-ng™?
We bring the vision to syslog-ng.
And to security data.
When we announced our fork of syslog-ng™ we promised to keep contributing to the open source project close to our hearts. Looking back now, we are proud to say that we haven’t taken our promise lightly.
Take a look at some of the features that we created:
- The FilterX data transformation toolkit
- Splunk HEC destination
- Amazon S3 destination
- Elasticsearch data streams destination
- Google Pub/Sub gRPC destination
- ClickHouse database destination
- Crowdstrike Falcon LogScale destination
- Google BigQuery destination
- Grafana Loki destination
- OpenObserve destination
- OpenTelemetry support (source and destination)
- A modern, granular metrics framework to monitor your pipeline
- Log tapping with the syslog-ng-ctl attach command
- UDP load balancing with ebpf
- And many others
FilterX - A robust toolkit for security data transformations
FilterX (developed by Axoflow) is a replacement for syslog-ng filter statements, parsers, and rewrite rules. It has a syntax and rich set of operators similar to popular scripting languages that allows you to filter, parse, manipulate, and rewrite variables and complex data structures, like OpenTelemetry logs, protocol buffers, and JSON.
FilterX is a consistent and comprehensive reimplementation of several core features with improved performance, proper typing support, and the ability to handle multi-level typed objects.
Modern metrics
AxoSyslog collects detailed metrics about its host and the data it transfers. Host performance metrics including disk buffer usage, packet loss, and event delay lets you quickly find and troubleshoot pipeline issues.
AxoSyslog can even create labeled metrics and counters based on the fields of the messages that are processed in a syslog-ng log path. The custom metrics that result provide metadata that is much more pertinent to your specific use cases, and go significantly beyond the standard “state of health” metrics of the host itself.
Modern observability stack integrations
AxoSyslog makes it easy and fast to integrate your log pipeline into modern observability stacks and cloud stacks, including: Splunk Cloud, OpenTelemetry, Grafana Loki, Amazon S3, Azure Monitor / Microsoft Sentinel, Elastic / OpenSearch, ClickHouse, Crowdstrike, Google Pub/Sub, Google BigQuery.
Upgrade to AxoSyslog in less than a minute
Deploy AxoSyslog easily or upgrade your existing syslog-ng deployment and start using the real upstream for the syslog-ng project. Actively developed on a weekly basis, it’s a drop-in replacement that is fully supported by the original authors of syslog-ng.
Learn more about how we instrument syslog-ng™ with metrics
You’re in good hands
You don’t have to worry about the switch to AxoSyslog. We provide:
Binary-compatible syslog-ng replacement packages
Axoflow is built on top of AxoSyslog, our syslog-ng™ fork.
Community and professional support
We’re the original creators of syslog-ng, and AxoSyslog is practically the upstream of syslog-ng. If anything is broken, we can fix it.
Secure, audited development environment and processes
We’re ISO27001 and SOC2 certified.
Professional services and integration
syslog-ng is a trademark of One Identity