if the records received by syslog-ng contain the host name it will use this by default. The answer my lie in how you configure syslog on the hosts themselves. From memory syslog-ng uses the host name info in the packets by default. Russell Istvan Szukacs wrote:
Hi!
I would like to log several computer which are behind nat. The problem is i cannot find the right metod to log by the hostname not by the ip reverse name from where the packets come.
But i got this:
Oct 1 02:34:27 external ip/external ip
Is there a possibility to devide the logs by the original hostname?
thx _______________________________________________ syslog-ng maillist - syslog-ng@lists.balabit.hu https://lists.balabit.hu/mailman/listinfo/syslog-ng Frequently asked questions at http://www.campin.net/syslog-ng/faq.html