Step 1: Get SexiLog

Step 2: Deploy

SexiLog appliance aimed to be deployed on a VMware vSphere™ environment which can be achieve via several ways:

Step 3: Configure

SexiLog is pre-configured in DHCP mode but it’s possible to switch to static mode thanks to SexiMenu (this tool is launched automatically when you connect via SSH/console or can be launched with/root/seximenu/


Beside menu 0) to 4) that matches common operations which are self explanatory (logout, access to shell, reboot or halt system, restart SexiLog services), menu 5) to 7) let you configure appliance network, keymap (useful for console troubleshooting on azerty keyboard) and configure Riemann settings (for e-mail alerting).

Step 4: Redirect ESXi syslog

To make VMware ESXi™ send logs to your SexiLog appliance, you need to add udp://your_appliance_fqdn_or_ipv4:514 in the advanced


You can use this PowerCLI script to automate the task:

As instructed by the VMware KB2003322you may need to open the VMware ESXi™ firewall to let the syslog traffic pass through.

And here you are, relax and start searching!

Annex: Credentials & URL

The default root password is Sex!Log. The default keyboard layout is Qwerty US.

The SexiLog web interface (ie Kibana) is listening on TCP port 80 so you can reach it at http://your_appliance_fqdn_or_ipv4/