[syslog-ng]Fwd: Syslog-ng doesn't parse certain log messages

Michael Renner m.renner@inode.at
Thu, 25 Jul 2002 13:48:02 +0200


>Date: Wed, 17 Jul 2002 15:52:32 +0200
>To: syslog-ng@lists.balabit.hu
>From: Michael Renner <m.renner@inode.at>
>Subject: Syslog-ng doesn't parse certain log messages
>
>Hi!
>
>It seems that our syslog-ng (1.5.18, upgraded from 1.5.14 today) stopped 
>logging messages from some routers. It seems to be a syslog-ng problem 
>because the routers don't have anything in common (except that all of them 
>are ciscos, but completely different hardware/ios versions).

Just wanted to let you know that this was caused by UDP-Packets with wrong 
UDP Checksums, caused by a buggy IOS in one of the routers.

"tcpdump -vvv -s0 -X" made this easily visible =)



mfg/best regards

-- 

Inode Telekommunikationsdienstleistungs GmbH  -  http://www.inode.at/
Michael Renner - Junior System Engineer
m.renner@inode.at, Tel.: +43 59999 0 Fax.: +43 59999 6599

Buero Wien - Millennium Tower Handelskai 94-96/43 - A-1200 Wien
Buero Graz - Schmiedlstrasse 1 - A-8042 Graz
Buero Sbg  - Schillerstrasse 30  - A-5020 Salzburg
Buero Ibk  - Eduard Bodem Gasse 5-7  - A-6020 Innsbruck