[syslog-ng]Issues with HP-UX

Stephan Hendl syslog-ng@lists.balabit.hu
Tue, 03 May 2005 13:59:10 +0200


your source should look the following

source s_sys { pipe("/dev/log" pad_size(2048)); internal(); };

the pad_size ist very important. BTW, it is included in the doku as well =
as in the faq I think.

regards
Stephan

>>> stanner@leeclerk.org 05/02/05 9:23  >>>
I have recently started using syslog-ng so that I can use stunnel to log
to a central loghost.  I have gotten syslog-ng working on a linux box,
and everything works fine, but my HP-UX boxes won't even log locally,
much less log to a loghost.  Below, I have included the syslog-ng.conf
for one of the hosts.

=20

=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D

Stephen Tanner

HP-UX Systems Administrator

Network Support Services

Lee County Clerk of Courts

=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D-=3D

=20

options { use_fqdn(no); keep_hostname(no); use_dns(no);
long_hostnames(off); sync(3); log_fifo_size(300); };

=20

#

# This is the default behavior of sysklogd package

# Logs may come from unix stream, but not from another machine.

#

source src { unix-dgram("/dev/log.un"); internal(); };

=20

# After that set destinations.

=20

# First some standard logfile

#

destination lpr { file("/var/adm/lpr.log"); };

destination mail { file("/var/adm/mail.log"); };

=20

# Some `catch-all' logfiles.

#

destination syslog { file("/var/adm/syslog/syslog.log"); };

=20

# The root's console.

#

destination console { usertty("root"); };

=20

# Virtual console.

#

destination console_all { file("/dev/tty8"); };

=20

# Here's come the filter options. With this rules, we can set which

# message go where.

=20

filter f_lpr { facility(lpr); };

filter f_mail { facility(mail); };

filter f_messages { level(info .. warn)and not facility(auth, cron,
daemon, mail, news); };

filter f_emergency { level(emerg); };

=20

###############################################################

=20

log { source(src); filter(f_lpr); destination(lpr); };

log { source(src); filter(f_mail); destination(mail); };

log { source(src); filter(f_messages); destination(syslog); };

log { source(src); filter(f_emergency); destination(console); };

#log { source(src); destination(messages); };

=20

###############################################################

## set up logging to a loghost forwarded from localhost via stunnel

destination loghost {tcp("127.0.0.1" port(514));};

=20

# send everything to loghost, too

log { source(src); destination(loghost); };

###############################################################