The syslog-ng Agent for Windows application has some global settings that can apply to both eventlog and file sources. To configure the global settings, complete the following procedure:
Procedure 5.3.3.1. Configuring global settings
Start the configuration interface of the syslog-ng Agent for Windows application.
Select and double-click on .
Set the default log facility associated to the messages.
By default, the filters and regular expressions (see Section 5.5, “Filtering messages”) used in the message filters are case-sensitive. To make them case-insensitive, select the Regular Expressions Ignore Case or the Filters Ignore Case options, or both.
![]() |
Note |
|---|---|
The Regular Expressions Ignore Case option makes
the |
Select , then . To activate the changes, restart the syslog-ng Agent service.
Filters and sources can be disabled globally as well. Disabling filters or sources means that the syslog-ng agent ignores the disabled settings: i.e., if the file sources are disabled, the agent does not send the messages from the files to the server. See the following procedure for details.
Procedure 5.3.3.2. Disabling sources and filters globally
Start the configuration interface of the syslog-ng Agent for Windows application.
To disable file sources, select , right-click on , then select .
To disable eventlog sources, select , right-click on , then select .
To disable file filters, select , right-click on , then select .
To disable eventlog filters, select , right-click on , then select .
Select , then . To activate the changes, restart the syslog-ng Agent service.
© 2007-2010 BalaBit IT Security
Please send your comments or documentation bugs to: documentation@balabit.com