[logs] Eventlog to syslog

Rodney Thayer rodney at canola-jones.com
Fri Feb 29 12:52:08 PST 2008


tbird at precision-guesswork.com wrote:
> Quoting Marcelo de Souza <marcelo at marcelosouza.com>:
> 
>>   Which tool do you really recommend for windows eventlog to unix
>> syslog translation?

The last time I tried to ask a Microsoft person "why don't
you support syslog" they gave me an answer indicating somehow
they thought the Desktop Management Task Force (DMTF) stuff
they support somehow replaces syslog.  That never made sense
to me but that's what I heard.

I'd like to just know why they don't support syslog.
Heard rumors Longhorn would fix that bug ;-)

Anyway, my point is, if that vendor (e.g. Microsoft)
thinks they have a reason for not doing syslog to support
external event management, I'd be interested in hearing that.
I think not doing syslog is broken but what I think we all
really see as a requirement is "externally available interoperable
standards-based event output" so I try to have an open mind
when this MS flaw is revisited...


More information about the LogAnalysis mailing list