<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Rsyslog on Pi Stack</title>
    <link>https://www.pistack.xyz/tags/rsyslog/</link>
    <description>Recent content in Rsyslog on Pi Stack</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Sat, 16 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://www.pistack.xyz/tags/rsyslog/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Self-Hosted Syslog Analysis: rsyslog mmjsonparse vs syslog-ng PatternDB vs Vector VRL</title>
      <link>https://www.pistack.xyz/posts/2026-05-16-self-hosted-syslog-analysis-rsyslog-syslog-ng-vector-vrl-guide/</link>
      <pubDate>Sat, 16 May 2026 00:00:00 +0000</pubDate>
      <guid>https://www.pistack.xyz/posts/2026-05-16-self-hosted-syslog-analysis-rsyslog-syslog-ng-vector-vrl-guide/</guid>
      <description>&lt;p&gt;Raw syslog messages are unstructured text streams that are difficult to search, alert on, and analyze at scale. Syslog analysis engines transform unstructured log data into structured, queryable formats by parsing fields, extracting patterns, and enriching messages with contextual metadata. This guide compares three powerful approaches to syslog analysis: rsyslog with mmjsonparse, syslog-ng with PatternDB, and Vector with Vector Remap Language (VRL).&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
