[syslog-ng] Date and Host in Syslog Format Need Swapping

Balazs Scheidler bazsi at balabit.hu
Thu Jan 17 10:23:34 CET 2008


On Wed, 2008-01-16 at 18:35 -0800, infosec at gmail.com wrote:

> From:  <wiskbroom at hotmail.com>
> Subj:  [syslog-ng] Date and Host in Syslog Format Need Swapping
> Date:  Wed Jan 16, 2008 12:46 pm
> Size:  440 bytes
> To:  Syslog-ng users' and developers' mailing list <syslog-ng at lists.balabit.hu>
> 
> 
> Hello:
> 
> I have an appliance that I've configured to send logs to syslog, but it is sending to a file named 2008.log instead of $FULLHOST.log
> 
> None of the other logs that I am getting contain the year, but for some reason, this one is.    Below is a sample of the log itself.
> 
> Jan 16 15:31:06 2008 [192.168.100.1]
> 
> Is it possible to ignore the YEAR and make output go to $FULLHOST.log ?
> 
> Thank you,

at least syslog-ng 2.0.7 can process timestamps like this. It was
integrated as "LinkSys" style timestamps.

-- 
Bazsi



More information about the syslog-ng mailing list