[syslog-ng] logging several to one facility - parsing

Terry td3201 at gmail.com
Fri Aug 19 18:08:48 CEST 2005


Excellent. As long as I know something like that is possible. I can figure 
out the rest. Thank you.

On 8/19/05, Paul Krizak <paul.krizak at amd.com> wrote:
> 
> You could set up filters that each uniquely match the router you want to
> monitor, then have different log destinations for each of them.
> 
> Or, assuming that your routers send along a hostname that is also a
> valid filename, you can do something like this:
> 
> destination router_logs {
> file(
> "/var/log/routers/$HOST-router.log"
> create_dirs(yes)
> );
> };
> 
> 
> 
> Paul Krizak 5900 E. Ben White Blvd. MS 625
> Advanced Micro Devices Austin, Tx 78741
> CAD Systems Engineering
> Paul.Krizak at amd.com
> 
> 
> Terry wrote:
> > Hello,
> >
> > I have several routers that I want to receive logs for. Can I send all
> > the logs from these to a single facility and have syslog-ng parse and
> > write them to different log files based on a ruleset such as ip address,
> > type of log, etc. ?
> >
> > Thanks!
> >
> >
> > ------------------------------------------------------------------------
> >
> > _______________________________________________
> > syslog-ng maillist - syslog-ng at lists.balabit.hu
> > https://lists.balabit.hu/mailman/listinfo/syslog-ng
> > Frequently asked questions at http://www.campin.net/syslog-ng/faq.html
> >
> 
> _______________________________________________
> syslog-ng maillist - syslog-ng at lists.balabit.hu
> https://lists.balabit.hu/mailman/listinfo/syslog-ng
> Frequently asked questions at http://www.campin.net/syslog-ng/faq.html
> 
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/syslog-ng/attachments/20050819/3ce449db/attachment.html


More information about the syslog-ng mailing list