Hi All
The customer wants to collect an event source that provides a clear total number of events... But when using syslog udp to send events, the number of events received is only about 70% of the number of events recorded by the event source... If it is changed Using syslog TCP to send the same number of events is even lower than 50%....
I want to avoid Sentinel Application first... I want to compare the amount of events received from syslog from SuSE. What command can I use to compare??
Thanks!!
Wencheng