Monitoring

Raw LogsNew

Aggregates raw security events collected by Hakware Collector agents across your environment into a searchable, filterable log view — with per-event drill-down for forensic investigation.

Raw Logs

Full event log access from every Hakware Collector agent

What it does

Key capabilities

Full-Text Search

Search across all collected log events by keyword, source, severity, or time range.

Per-Event Detail

Drill into any individual event to view the complete raw log payload, source agent, and timestamp.

Advanced Filtering

Filter by log level, source host, collector ID, event category, and custom date ranges.

Multi-Agent Aggregation

Consolidates events from all enrolled Hakware Collector agents into a single unified view.

Retention & History

Browse historical log data without leaving the platform — no external SIEM query required.

Event Manager Integration

Raw log events feed directly into the Event Manager for rule-based alerting and automated response.

Highlights

Why Raw Logs?

  • Collected via always-on syslog listener (port 514)
  • Full raw event payload visible per log entry
  • Aggregated from all Hakware Collector agents
  • Feeds Event Manager for automated triage
  • No external SIEM required for log access
Included in OneView

Raw Logs is part of the Hakware OneView platform. All findings, events, and data from this module flow into your central dashboard alongside every other security signal in your environment.

24/7 Support Available
Phone: +27 060 984 1210
FAQs

Frequently asked questions

Hakware Collector agents listen on port 514 (syslog) and forward events to the platform. Raw Logs receives firewall connection logs, endpoint process and authentication events, application logs from web servers and databases, network device syslog output, and any other syslog-compatible event source configured to forward to the collector.

Raw Logs provides full-text search across all collected log events. Enter any keyword, IP address, hostname, user name, or error string in the search field and results are returned across all collectors and time ranges. Advanced filters let you narrow by log level, source host, collector ID, event category, and custom date range.

Raw Logs provides access to the unprocessed event stream — every log line exactly as received from the collector. Event Management sits above this layer and applies correlation rules to group related events into meaningful incidents. Analysts use Raw Logs for forensic investigation and hunting when they need the full detail behind an alert surfaced in Event Management.

Log retention periods are configurable based on your compliance requirements. PCI DSS requires 12 months of log retention. ISO 27001 and most regulatory frameworks recommend 6–12 months of accessible logs. Hakware supports configurable retention policies per log source, with older data archived according to your data management policy.

See Raw Logs in action

Request a personalised demo and we'll show you exactly how Raw Logs works within your environment.