Overview
Revolutionize your approach to working with rsyslog with unprecedented simplicity. Bid farewell to the complexities of tinkering with configuration files and deciphering intricate documentation. Our AWS Marketplace app redefines user experience, prioritizing seamless functionality while maintaining peak performance even on budget-friendly instance types. Our commitment is to ensure effortless setup, complemented by an integrated cloud formation file.
Upon installation, a harmonious orchestration begins: logs are effortlessly collected, superfluous noise is effortlessly sieved out, and a robust daily backup to S3 becomes an automatic routine. But this is just the beginning; should your needs evolve, our app offers a spectrum of enhanced configuration options to explore.
Our approach thrives on user engagement. Drawing from over two decades of innovation, we've molded our development journey based on invaluable user feedback, continuously integrating novel features that enrich the experience for all patrons.
At the heart of our offering lies our position as the pioneering architects of rsyslog. Our profound understanding, amassed through years of dedication, empowers us to fine-tune performance and functionalities. Beyond the app, our professional services extend our insights, shaped by engagements with a plethora of prominent organizations. Today, whether you're a burgeoning startup or a conglomerate giant, our wealth of knowledge is now conveniently available on AWS, providing you with robust and intuitive logging capabilities of the utmost caliber.
Highlights
- Straight from the rsyslog developers. Special requests? We're here to tailor solutions for you.
- Effortless, out-of-the-box log management, easily configured via a user-friendly interface.
- Achieve cost savings through integrated cloud expenses and product support. Benefit from minimal system resource usage, thanks to our optimized configuration. Trust in our expertise to maximize your rsyslog experience
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Cost/hour |
|---|---|
t2.micro | $0.399 |
t3.micro | $0.299 |
t3a.micro | $0.289 |
t3.small | $0.599 |
t3a.small | $0.579 |
t3.xlarge | $4.799 |
t2.xlarge | $6.599 |
t2.small | $0.799 |
t3a.2xlarge | $9.249 |
t2.large | $3.299 |
Vendor refund policy
If you decide to cancel your subscription within the first 7 days after your purchase, Adiscon will not charge you for the application. You are entitled to a full refund during this period.
After the initial 7-day period, Adiscon does not offer refunds for subscription cancellations. However, you retain the freedom to terminate your application usage at any time.
Hourly Charging: Please note that we utilize hourly charging for our services.
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
rsyslog server cloudformation stack.
"Revolutionize your approach to working with rsyslog with unprecedented simplicity. Bid farewell to the complexities of tinkering with configuration files and deciphering intricate documentation. Our AWS Marketplace app redefines user experience, prioritizing seamless functionality while maintaining peak performance even on budget-friendly instance types. Our commitment is to ensure effortless setup, complemented by an integrated cloud formation file.
Upon installation, a harmonious orchestration begins: logs are effortlessly collected, superfluous noise is effortlessly sieved out, and a robust daily backup to S3 becomes an automatic routine. But this is just the beginning; should your needs evolve, our app offers a spectrum of enhanced configuration options to explore.
Our approach thrives on user engagement. Drawing from over two decades of innovation, we've molded our development journey based on invaluable user feedback, continuously integrating novel features that enrich the experience for all patrons.
At the heart of our offering lies our position as the pioneering architects of rsyslog. Our profound understanding, amassed through years of dedication, empowers us to fine-tune performance and functionalities. Beyond the app, our professional services extend our insights, shaped by engagements with a plethora of prominent organizations. Today, whether you're a burgeoning startup or a conglomerate giant, our wealth of knowledge is now conveniently available on AWS, providing you with robust and intuitive logging capabilities of the utmost caliber."
CloudFormation Template (CFT)
AWS CloudFormation templates are JSON or YAML-formatted text files that simplify provisioning and management on AWS. The templates describe the service or application architecture you want to deploy, and AWS CloudFormation uses those templates to provision and configure the required services (such as Amazon EC2 instances or Amazon RDS DB instances). The deployed application and associated resources are called a "stack."
Version release notes
We are excited to announce the second public release of Rsyslog Server on AWS Marketplace. This version includes efficient logging, noise event filtering, and a streamlined web interface for system management. New features: Cloudwatch LogGroups, logfile compression, S3 log/config storage, enhanced CloudFormation support, and improved AWS region handling. Experience enhanced logging capabilities and simplified management with Rsyslog Server.
Additional details
Usage instructions
Please visit our rsyslog on AWS setup guide in the product documentation: https://www.rsyslog.com/aws-rsyslog-setup/
Resources
Vendor resources
Support
Vendor support
We provide 24hr access to our customer support system. Feel also free to let us know feature requests.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Standard contract
Customer reviews
Implementing rsyslog improved firewall observability, log retention, and incident investigation capabilities.
What is our primary use case?
Our primary use case for rsyslog server is centralized log collection, long-term retention, and security monitoring. We also use it as an intermediate logging layer before forwarding logs to our CrowdStrike Falcon cloud platform for XDR and MDR analysis.
We built an automated pipeline where firewall devices send logs to rsyslog server , which then processes, stores, and forwards the logs to CrowdStrike Falcon . This helps us detect abnormal firewall activity, suspicious traffic, and security-related events in near real time.
The solution is also valuable for historical investigations because it allows us to retain logs locally for root cause analysis and back-dated event reviews.
How has it helped my organization?
rsyslog server has significantly improved our firewall visibility, centralized monitoring, and overall security operations. Before implementing centralized logging, visibility into inbound and outbound firewall activity was limited.
After integrating rsyslog into our environment, we gained better insight into traffic behavior, firewall policy usage, and potential security issues. This helped us improve firewall rules, reduce unnecessary open ports, strengthen outbound connectivity controls, and accelerate troubleshooting and forensic investigations.
What is most valuable?
The best features of rsyslog server are its support for both UDP and TCP log ingestion, flexible log routing, self-hosting capability, log rotation management, and reliable buffering and forwarding features.
These capabilities are essential in our environment because our firewalls generate a large volume of logs every day. Proper log rotation prevents files from becoming too large and difficult to analyze during investigations.
Another major advantage is the ability to offload buffering, retries, forwarding, and parsing from the firewall itself. This reduces firewall workload while ensuring logs are securely stored and available for future analysis.
What needs improvement?
One area that could be improved is native support for Docker and Kubernetes container logging. While integration is possible, forwarding container logs into XDR or MDR platforms often requires additional customization.
Simplified cloud-native integrations and easier container log management would make the solution more efficient for modern environments.
For how long have I used the solution?
I have been using rsyslog server for approximately two and a half years for centralized log collection, retention, and security analysis.
What do I think about the stability of the solution?
Yes, rsyslog server has been very stable in our environment. It handles large log volumes reliably without major operational issues. Restarting services, rotating logs, and maintaining long-term retention have all been straightforward and dependable.
What do I think about the scalability of the solution?
The scalability of rsyslog server has been excellent in our environment. It handles multiple gigabytes of firewall and infrastructure log data efficiently without performance issues, even as our logging requirements continue to grow.
How are customer service and support?
I have not needed to reach out for customer support concerning rsyslog server
Which solution did I use previously and why did I switch?
I did not use another centralized logging solution before rsyslog server. We implemented it based on organizational requirements, and it has proven to be reliable and highly effective for our environment.
How was the initial setup?
The initial setup was straightforward in our environment. We configured the firewall devices to forward web filtering, DNS filtering, and application filtering logs to the rsyslog server using the server’s IP address for centralized log ingestion.
On the rsyslog side, we created separate log collection files and routing rules so that firewall logs are stored independently for easier analysis and troubleshooting. We also implemented automated daily log rotation and compression of older log files for long-term retention and future forensic investigations.
What about the implementation team?
No, we handled the deployment and implementation internally without using an external integrator or consultant. The setup and configuration process was manageable with in-house Linux and firewall administration knowledge.
What was our ROI?
The initial setup was straightforward. We configured the firewall devices to forward web filtering, DNS filtering, and application filtering logs to the rsyslog server.
On the rsyslog side, we created separate log collection files and automated daily log rotation with compression of older logs for future investigations and retention management.
What's my experience with pricing, setup cost, and licensing?
Our experience with pricing and setup has been very positive because rsyslog is open-source and highly flexible. The deployment and maintenance costs were minimal compared to commercial logging platforms.
Which other solutions did I evaluate?
Before choosing rsyslog server, we evaluated Datadog . However, we preferred rsyslog because it provided a cost-effective and flexible self-hosted solution for centralized log collection and investigation without depending heavily on third-party licensing costs.
What other advice do I have?
I would rate rsyslog server 10 out of 10 for centralized logging, log forwarding, and long-term forensic analysis.
For organizations considering rsyslog server, I highly recommend it because it is stable, scalable, lightweight, and highly effective for firewall and infrastructure log management.
Logging has simplified daily troubleshooting and has improved monitoring for network devices
What is our primary use case?
The main purpose of rsyslog server is collecting logs from network devices and storing them on a server for monitoring.
What is most valuable?
The best feature of rsyslog server is easy configuration, which includes straightforward setup and quick monitoring of the logs.
The easy configuration and quick monitoring of rsyslog server help me in my day-to-day work as it saves my time and makes my troubleshooting easier. Once I configure the details in rsyslog.conf and restart rsyslog server, I can quickly access the information, which is very useful for troubleshooting purposes.
What needs improvement?
Based on my understanding, there are no pain points or negative aspects regarding rsyslog server; all aspects are positive.
For how long have I used the solution?
I have been using rsyslog server for more than six years.
What do I think about the stability of the solution?
rsyslog server is stable.
What do I think about the scalability of the solution?
The scalability of rsyslog server is good, as I can perform housekeeping and delete old log files that are generated and stored.
How are customer service and support?
I have not faced any issues with customer support and have not raised any support requests.
Which solution did I use previously and why did I switch?
I have not used any different solution for monitoring these network device logs; I am using only rsyslog server.
How was the initial setup?
I manually configured the rsyslog.conf on a server, and there is no licensing for rsyslog server. Splunk, in contrast, uses licensing based on daily data ingestion volume, which relates to the indexing count of the logs in Splunk.
Which other solutions did I evaluate?
I have not evaluated any other options, as rsyslog server is the only solution I use for monitoring logs from network devices.
What other advice do I have?
My advice for others looking into using rsyslog server is that it is easy to use and configure. Once the network device parameters are configured in rsyslog.conf, I can easily monitor the log files, which are useful for troubleshooting purposes. I would rate this product a 9 out of 10.
Centralized logging has improved troubleshooting and supports fast audits across all servers
What is our primary use case?
My main use case for rsyslog server is resending logs to my log server from other servers, and I am redirecting logs from regular servers to one log server.
For resending logs using rsyslog server , I configure one server and enable it on the Ubuntu machine to which I redirect all servers' logs. I enable UDP and TCP for the logs in a firewall, and then on end machines such as servers, I go to rsyslog and enable it. After that, I configure the IPs from the client machine, meaning the server machine, to rsyslog server.
I use rsyslog server exclusively for this purpose.
What is most valuable?
In my opinion, the best features rsyslog server offers include the ability to send enormous logs from client OS to server devices, which I can fix with scripts. I can easily identify the host machine and what kind of logs it contains, whether it is an application log or operation log, and it sorts them based on how I write the script, allowing it to redirect and resend the logs.
These features make my day-to-day work easier and more efficient because whenever I find any failure or boot problems in a client machine, I can easily identify the issue. I can go to the log machine and check what kind of problem it is, whether it is a web server crash or a main server crash, and based on the logs and messages, I can easily identify and troubleshoot the issues. Furthermore, I can monitor and audit the logs as well, including SSH logins, and track who last logged in and who is currently logged in on the machines, as well as easily track any failed login attempts in case of suspicious activities.
rsyslog server has positively impacted my organization by providing centralized logging for our machines. I implemented it for the servers, database, application servers, and some network devices as well. I get day-to-day logs, which I can monitor easily and audit those devices, impacting our day-to-day productivity.
What needs improvement?
Currently, I use rsyslog server, but I think some features could be improved by going through other SIEM tools or IBM tools. I am using Splunk for this purpose; I have installed a Splunk agent in the client application, which allows me to redirect the same functionality I need in my daily operations.
For how long have I used the solution?
I have been using rsyslog server for more than a year.
What do I think about the stability of the solution?
rsyslog server is stable in my experience.
What do I think about the scalability of the solution?
Regarding scalability, rsyslog server can handle increased loads or more devices easily.
How are customer service and support?
Customer support for rsyslog server has not been needed since I maintain everything myself. If anything happens, I am responsible for finding and fixing the issues; therefore, there is no need to reach out for customer service.
Which solution did I use previously and why did I switch?
I did not previously use a different solution before rsyslog server; I have always been using rsyslog.
What was our ROI?
I have seen zero return on investment with rsyslog server as it is an open-source tool. I just download it and do scripting for the kind of logs I want, and it is very easy to configure without any associated costs.
What's my experience with pricing, setup cost, and licensing?
I am not getting any pricing, setup cost, or licensing related to rsyslog server; I am just using it as is.
Which other solutions did I evaluate?
Before choosing rsyslog server, I evaluated options such as Splunk and some SIEM tools such as Graylog or IBM QRadar , but those were licensed. I cannot use them without going through enterprise purchases, which are financially prohibitive.
What other advice do I have?
I can share specific outcomes regarding rsyslog server, as it has saved me time and improved my ability to respond to issues. Recently, I encountered a problem where my SSH server was down automatically, which caused some users to be unable to log in. From that log, I checked and found critical bugs in SSH, allowing me to troubleshoot the issue within a short amount of time.
My advice for others looking into using rsyslog server is that if someone wants to set up a local environment with a budget-friendly approach, they should choose rsyslog server. If they have ten to fifteen machines in their cloud or private cloud, they can use rsyslog server without issues, making it easier to improve their daily productivity. I would rate this product nine out of ten.