Linux audit.log messages are encoded hexadeciaml. Is there a way for Sumologic to decode them so they can be useful logs inside Sumologic
references the same problem, but doesn't address the issue of having the logs in human readable format.
Is there a way to decode the logs from hexadecimal notation into human readable format please.
-
Official comment
there is a hex to decimal conversion operator https://help.sumologic.com/05Search/Search-Query-Language/Search-Operators/hexToDec
also hex to ASCII : https://help.sumologic.com/05Search/Search-Query-Language/Search-Operators/hexToAscii
Comment actions
Please sign in to leave a comment.
Comments
2 comments