The whole point of setting up a loghost was to report on the logs. How can syslog-ng help?

Syslog-ng is not about reporting on messages. Syslog-ng is a "sink" for syslog messages. Once syslog-ng commits them to some sort of storage (filesystem, database, line printer, etc),it is up to you to scan them. There is a number of web based GUIs, which can search and report on syslog data. Some of the software projects we tested are: