27 Oct
2003
27 Oct
'03
9:12 a.m.
On Mon, Oct 27, 2003 at 04:54:51PM +0800, Santa Lau wrote:
I think you should attach strace to the syslog-ng process and check whether it really receives log messages (you should see recvfrom() lines for each message received), it might also be possible that syslog-ng blocks on DNS for example.
Thanks for your tips. I use strace to trace the network activity(strace -e network syslog-ng -F). I only found the IP which has logs. It is different from the result of tcpdump.
Maybe your packet filter drops those messages? -- Bazsi PGP info: KeyID 9AF8D0A9 Fingerprint CD27 CFB0 802C 0944 9CFD 804E C82C 8EB1