Skip to content
LogoLogScale DocumentationFull Library Knowledge Base Release Notes Integrations Query Examples Training API GraphQL API Contacting Support
help

Versions of this Page

  • Falcon LogScale Collector
    • Key Concepts
    • Prerequisities and Sizing
            • Memory Usage Log Messages
    • Installation
      • Full Installation
      • Custom Installation
        • Custom Installation Linux
        • Custom Installation macOS
        • Custom Installation Windows
          • Run the Falcon LogScale Collector Manually
        • Download Installers from the Command-line
        • Update your Custom Log Collector Installation
    • Configuration
      • Create a Configuration - Remote
      • Create a Configuration - Local
      • Validate a Configuration
      • Minimal Configuration Example
      • Configuration Reference and Examples
        • Configuration Reference
          • Sources (sources)
            • File Source
            • Windows Event Log Source
            • Syslog Source
            • Syslog via TLS Source
            • Unified Logs Source
            • Journal Source
            • Internal (loopback) Source
            • Command (Exec) Source
          • Sinks (sinks)
            • TLS
            • Queue (queue)
              • Queue Memory
              • Queue Disk
          • Settings (settings)
          • Optional Flags(flags)
          • Fleet Management (fleetManagement)
              • Full (full)
              • Local(localConfig)
              • Legacy (legacy)
          • Data Directory (dataDirectory)
        • Configuration Examples
          • Exec (cmd) Source
          • File (Linux) Source
          • File (Linux) Source (NG-SIEM)
          • File Source
          • File Source with Transforms
          • Journal Source
          • Syslog Source
          • Syslog Source (NG-SIEM)
          • Syslog Source Multi-Destination
          • Syslog-tls Source
          • Unified Log Source
          • Windows Event Log Source
          • Windows Multi-Source
          • Windows Multi-Source (NG-SIEM)
          • Windows Source (NG-SIEM)
        • Configuration Use Cases
          • All sources: How to use Transforms
          • All Sources: Use a Parser
          • All Sources: Set a Proxy Server
          • Syslog Source: Multi-Destinations Sinks
          • File Source: Read Compressed Files
          • File Source: File Rotation Support
          • Windows Source: Filters and Customizations
          • Unified Log Source: Filter with Predicates
    • Fleet and Group Management
      • Fleet Overview
      • Fleet Insights
        • View Metrics and Errors
        • Aggregate Data
        • Filter Data
      • Manage Groups
      • Manage Remote Configurations
      • Enroll Instances
      • Internal Logging
    • Troubleshooting
      • Debug Commands
    • Metrics
    • Metadata
    • Deployment Architectures
      • Collect Kubernetes Pod Logs
        • Configure a Falcon LogScale Collector Helm Chart
        • Falcon LogScale Collector Helm Chart
        • Helm Chart Adding Additional Metadata
        • Helm Chart with Falcon CWP (Cloud Workload Protection)
    • Related KB Articles
    • Falcon LogScale Collector Releases
      • Full Falcon LogScale Collector Release Notes Index
Falcon LogScale Documentation
/ Falcon LogScale Collector 1.9.0-1.10.2

Related KB Articles

The Log Collector has a number of related Knowledge Base articles, listed below:

  • Reassemble a UDP Syslog Event

  • Log Collector Resiliency and Monitoring

  • Downgrading LogScale Collector from Version 1.8.1 to 1.7.x

  • Choosing a Log Shipper

Support
  • Twitter
  • LinkedIn
  • Youtube

© 2025 CrowdStrike All other marks contained herein are the property of their respective owners.

Enter search term