Transfer the logs being thrown into /var/log/messages into another file example /var/log/volumelog
I have been searching and reading about syslog. I would like to know how to Transfer the logs being thrown into /var/log/messages into another file example /var/log/volumelog.
I'm using RHEL and my var/log/messages file is filled with "FTP session opened/closed" lines that happen all day:
Aug 2 04:04:38 web proftpd: 74.125.56.10 (142.231.76.249) - FTP session closed.
Aug 2 04:05:11 web proftpd: 74.125.56.10 (142.231.88.123) - FTP session opened.Is this normal? We... (2 Replies)
hi sirs
can u tell the difference between /var/log/syslogs and /var/adm/messages
in my working place i am having two servers.
in one servers messages file is empty and syslog file is going on increasing..
and in another servers message file is going on increasing but syslog file is... (2 Replies)
The /var/adm/messages in Solaris seem to log more system messages/errors compared to /var/log/messages in Linux.
I checked the log level in Linux and they seem OK.
Is there any other log file that contains the messages or is it just that Linux doesn't log great many things? (2 Replies)
How can view log messages between two time frame from /var/log/message or any type of log files.
when logfiles are very big and especially many messages with in few minutes, I would like to display log messages between 5 minute interval.
Could you pls give me the command? (1 Reply)
The /var/log/messages folder grows exponentially - in 3 hours it went up from 70 K to 6GB.
I have an application and it keeps writing such logs at very high speed.
Which of the following feature has to be disabled?
The entry in syslog.config is shown below
... (1 Reply)
i am working with embedded system -Dell DCS management sub system. my question is as below:
currently we are using linux kernel 2.6.30 build and we have a kernel logs stored to the /var/log/messages path. now we have to transfer all this logs to the specified SNMP target as a part of SNMP... (4 Replies)
Below is my script to log all the command input by any user to /var/log/messages. But I cant achieve the desired output that i want. PLease see below.
function log2syslog
{
declare COMMAND
COMMAND=$(fc -ln -0)
logger -p local1.notice -t bash -i -- "$USER:$COMMAND"
}
trap... (12 Replies)
I am getting a lot of message as follows in /var/log/message files as follows.
messages.1:559:May 4 20:01:56 SERVER2 kernel: session_stat: sync=0 async=33 aretr=0
messages.1:560:May 4 20:02:42 SERVER2 kernel: session_stat: dev=fd:5 state=6 blksize=4096 mmapsize=262144
messages.1:561:May 4... (2 Replies)
Discussion started by: Anjan Ganguly
2 Replies
LEARN ABOUT DEBIAN
socklog-conf
socklog-conf(8) System Manager's Manual socklog-conf(8)NAME
socklog-conf - sets up a socklog(8) service.
SYNOPSIS
socklog-conf unix|inet|klog|ucspi-tcp acct logacct
socklog-conf notify acct grp
DESCRIPTION
socklog-conf creates /etc/sv if necessary and a subdirectory that runs the unix, inet, ucspi-tcp or notify service (see below for each ser-
vice). Except for the notify service, socklog-conf also creates a log directory with subdirectories.
acct, logacct and grp must not contain any special characters.
UNIX SERVICE
socklog-conf unix acct logacct
Running socklog-conf with the 1st argument unix, socklog-conf creates the service directory /etc/sv/socklog-unix and the log directory
/var/log/socklog.
socklog-conf arranges for socklog(8) to run under the uid and gid of acct and to listen for syslog messages on /dev/log.
It also creates automatically rotated log directories in /var/log/socklog. The logs are owned by logacct. The corresponding svlogd(8)
process runs under the uid and gid of logacct.
You can add the service to system-wide service supervision through the update-service(8) program:
update-service --add /etc/sv/socklog-unix
INET SERVICE
socklog-conf inet acct logacct
Running socklog-conf with the 1st argument inet, socklog-conf creates the service directory /etc/sv/socklog-inet and the log directory
/var/log/socklog-inet.
socklog-conf arranges for socklog(8) to run under the uid and gid of acct and to listen for syslog messages on the UDP socket 0.0.0.0:514.
It also creates automatically rotated log directories in /var/log/socklog-inet. The logs are owned by logacct. The corresponding
svlogd(8) process runs under the uid and gid of logacct.
You can add the service to system-wide service supervision through the update-service(8) program:
update-service --add /etc/sv/socklog-inet
KLOG SERVICE
socklog-conf klog acct logacct
Running socklog-conf with the 1st argument klog, socklog-conf creates the service directory /etc/sv/socklog-klog and the log directory
/var/log/socklog-klog.
socklog-conf arranges for socklog(8) to run under the uid and gid of acct and to read kernel messages from /proc/kmsg on Linux, or
/dev/socklog-klog on BSD.
It also creates automatically rotated log directories in /var/log/socklog-klog. The logs are owned by logacct. The corresponding
svlogd(8) process runs under the uid and gid of logacct.
You can add the service to system-wide service supervision through the update-service(8) program:
update-service --add /etc/sv/socklog-klog
UCSPI-TCP SERVICE
socklog-conf ucspi-tcp acct logacct
Running socklog-conf with the 1st argument ucspi-tcp, socklog-conf creates the service directory /etc/sv/socklog-ucspi-tcp and the log
directory /var/log/socklog-ucspi-tcp.
socklog-conf arranges for tcpsvd(1) to run socklog(8) under the uid and gid of acct and to listen on the TCP socket 0.0.0.0:10116.
It also creates automatically rotated log directories in /var/log/socklog-ucspi-tcp. The logs are owned by logacct. The corresponding
svlogd(8) process runs under the uid and gid of logacct.
You can add the service to system-wide service supervision through the update-service(8) program:
update-service --add /etc/sv/socklog-ucspi-tcp
NOTIFY SERVICE
socklog-conf notify acct grp
Running socklog-conf with the 1st argument notify, socklog-conf creates the service directory /etc/sv/socklog-notify.
socklog-conf arranges for uncat(1) to run under the uid and gid of acct and to listen on the named pipe /var/log/socklog/.notify. The
named pipe will have mode 0620, the uid of acct and the gid of grp.
All uids running a log service that is configured to push log events to the socklog-notify service must be member of the group grp.
You can add the service to system-wide service supervision through the update-service(8) program:
update-service --add /etc/sv/socklog-notify
SEE ALSO socklog(8), svlogd(8), nc(1), tryto(1), uncat(1), socklog-check(8), tcpsvd(8), sv(8), runsv(8), runsvdir(8)
http://smarden.org/socklog/
http://smarden.org/runit/
AUTHOR
Gerrit Pape <pape@smarden.org>
socklog-conf(8)