# Graylog2/graylog2-server

Free and open log management

Repository: https://github.com/Graylog2/graylog2-server
Canonical: https://ross.abutalabs.com/products/graylog2-server
Homepage: https://www.graylog.org
Language: Java
License: NOASSERTION
License Family: other
Topics: log-analysis, log-collector, log-viewer, logging, logging-server, siem, secure-logging, security, gelf, syslog, graylog, kafka, amqp, log-management, hacktoberfest
Last push: 2026-08-26T22:05:47+00:00

## Health v2 (maintenance only)
Score: 77/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 99, release rhythm 35, longevity 100
- inputs: {"age_days": 5952, "days_push": 7, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 8115, forks 1123 (observed 2026-08-28T04:10:13.251506+00:00)

## What it is
Graylog is a free and open log management platform for collecting, storing, searching, and analyzing log data from across IT environments, with dashboards, alerting, and pipeline-based log routing. It also provides SIEM capabilities such as threat detection with Sigma rules, anomaly detection, and investigations.

## Use cases
- centralize logs from servers and applications
- search and analyze log data in real time
- set up alerts on log events and anomalies
- build a self-hosted SIEM for threat detection
- collect syslog and GELF messages
- route and enrich logs with pipelines
- create dashboards and reports from log data

## When to choose
- you need centralized log management with powerful search and dashboards
- you want an open-source SIEM with alerting and Sigma rule support
- you need to ingest logs via syslog, GELF, Kafka, or AMQP at scale
- you prefer self-hosting your log platform on your own infrastructure

## When to avoid
- you need a permissive open-source license - Graylog uses SSPL, not OSI-approved
- you only need lightweight local log viewing without a server stack
- you want a fully managed cloud logging service without operations
- you need enterprise features like certain AI capabilities that require paid Graylog editions

## Facets
- artifact type: service
- maturity: stable
- function: logging, search-engine, alerting, monitoring, analytics, security
- domain: monitoring, security, analytics, self-hosted
- platform: self-hosted, jvm
- tags: log-management, siem, syslog, gelf, log-analysis, log-collector, kafka, amqp, threat-detection, sspl, dashboard, devops, linux, docker, web-server

## Member repositories
- Graylog2/graylog2-server (main) score 77

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:10:13.251506+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T17:30:38.285091+00:00, confidence not recorded.
  - readme: https://github.com/Graylog2/graylog2-server (fetched 2026-08-28T04:10:13.251506+00:00, sha abbf4e8417ba)
  - homepage: https://www.graylog.org (fetched 2026-08-29T08:29:00.796315+00:00, sha a5d14ee59a47)
  - site_page: https://go2docs.graylog.org/current/home.htm (fetched 2026-08-29T08:29:00.800956+00:00, sha 4c5aec974856)
  - site_page: https://docs.graylog.org/ (fetched 2026-08-29T08:29:00.804444+00:00, sha 5c5046907f0a)
  - site_page: https://graylog.org/about (fetched 2026-08-29T08:29:00.806983+00:00, sha d9f98306982a)
  - site_page: https://graylog.org/feature (fetched 2026-08-29T08:29:00.799187+00:00, sha 1be9b7ccd85a)
- Data as of 2026-08-30T08:39:29.467469+00:00.
