I would follow the files using the wildcard-file() source, possibly with marking them up with apache specific name-value pairs that we extract from filenames and/or content. On Tue, Mar 26, 2019, 06:48 Nik Ambrosch <nik@ambrosch.com wrote:
How are people managing their apache access logs using syslog-ng these days - still just piping through logger? I'm looking to take over logging entirely using syslog-ng, not just reading files from disk and sending to ES or something.
In the past I've used cronolog, which works fine, but I'd love the flexibility of sending the logs through syslog-ng.
______________________________________________________________________________ Member info: https://lists.balabit.hu/mailman/listinfo/syslog-ng Documentation: http://www.balabit.com/support/documentation/?product=syslog-ng FAQ: http://www.balabit.com/wiki/syslog-ng-faq