Logo
Resources
Documentation Portal Ideas Portal Logpoint Academy License Portal
Resources
Documentation Portal Ideas Portal Logpoint Academy License Portal
Sign in
  1. Logpoint Service Desk
  2. Knowledge Center
  3. Normalization & Parsing

Creation of a new normalization request

Avatar Utsav Amatya
March 29, 2022 07:29
Follow

When creating a new normalization request, please include the following information. This will accelerate the normalization package fabrication procedure:

  • Name and version of the log source
  • Logging documentation for the version of the log source(can be obtained from the device vendor)
  • Sample logs from the device(The sample logs can be anonymized before being provided on the request)

 

Notes: You can use the following query to extract the un-normalized sample logs from the UI of LogPoint

            device_ip='xx.xx.xx.xx' -norm_id=* | norm <ALL:.*> | fields ALL

Comments

  • Avatar
    dak
    March 24, 2022 10:01

    I need to be able to write my own normalizer.

    Comment actions Permalink
  • Avatar
    Utsav Amatya
    March 29, 2022 07:24

    You can write your own normalization package. The information for this can be found on the following link:
    https://docs.logpoint.com/docs/data-integration-guide/en/latest/Configuration/Signatures.html#

    Do let us know if this was helpful for you.

    Comment actions Permalink
  • Avatar
    dak
    March 29, 2022 07:29

    Thank you, very helpful :)

    Comment actions Permalink

Please sign in to leave a comment.

Related articles

  • Universal Normalizer
  • Support Overview
  • Cloning a virtual Logpoint installation to a physical machine to solve unsupported hardware issue
  • LDAP Enrichment Source
  • Universal REST API Fetcher
Was this article helpful?
0 out of 2 found this helpful
Important Information
By clicking “I Agree & Download”, you confirm that you have reviewed the prerequisites and key information for Logpoint version 7.8.0. You acknowledge that this version requires firewall port 8443 to be opened in environments where a firewall exists between distributed Logpoint components (for example, between nodes or collectors). Failure to apply the required firewall changes may impact system functionality.
For more details, please review the following article:
https://servicedesk.logpoint.com/hc/en-us/articles/33742792586653-Change-in-LP-LP-Communication-Firewall-Requirement-from-7-8-0

Please ensure that all prerequisite requirements are met before proceeding with this installation or upgrade.
Cancel I Agree & Download
Privacy policy    EULA    Terms of service   
Copyright © , Logpoint. All rights reserved.

Note: We use cookies that are essential for the smooth functioning of our website.