[syslog-ng] Reason why syslog-ng service dies frequently

Nguyen Trung Hieu trunghieubcvt at gmail.com
Thu Jan 1 03:41:43 CET 2015


Dear team
I have instaled syslog-ng version 3.5.4.1 on Centos 6.5 32 bit for 4
months, recently it dies very frequently, after I restart service it only
work for some hours then die again. I have checked but still don't know
why. Can anyone help me on this. Thank you.
Below is log from my Centos box, I also attached my syslog-ng config file.

[root at centos65-x86 ~]# syslog-ng -V
syslog-ng 3.5.4.1
Installer-Version: 3.5.4.1
Revision: ssh+git://algernon@git.balabit
/var/scm/git/syslog-ng/syslog-ng-ose--mainline--3.5#master#4090ee62163780ae68a0c83cfdc23998c904fe97
Compile-Date: Aug  6 2014 11:49:42
Available-Modules:
syslogformat,linux-kmsg-format,affile,csvparser,confgen,afamqp,system-source,afsql,dbparser,afstomp,afsocket,afsocket-notls,afmongodb,cryptofuncs,afprog,afuser,basicfuncs
Enable-Debug: off
Enable-GProf: off
Enable-Memtrace: off
Enable-IPv6: on
Enable-Spoof-Source: off
Enable-TCP-Wrapper: off
Enable-Linux-Caps: off
Enable-Pcre: off

[root at centos65-x86 ~]# cat /etc/issue
CentOS release 6.5 (Final)
Kernel \r on an \m

[root at centos65-x86 ~]# service syslog-ng status
syslog-ng dead but subsys locked
[root at centos65-x86 ~]#
[root at centos65-x86 ~]#
[root at centos65-x86 ~]# ll /var/lock/subsys/syslog-ng
-rw------- 1 root root 0 Dec 31 15:06 /var/lock/subsys/syslog-ng
[root at centos65-x86 ~]#
[root at centos65-x86 ~]#
[root at centos65-x86 ~]# ps -ef | grep syslog-ng
root     15347 15312  0 09:23 pts/0    00:00:00 grep syslog-ng

[root at centos65-x86 ~]# date
Thu Jan  1 09:23:49 ICT 2015
[root at centos65-x86 ~]# tail -1 /var/log/messages
Dec 31 18:06:47 centos65-x86 syslog-ng[5457]: Log statistics;
processed='src.internal(s_local#2)=18',
stamp='src.internal(s_local#2)=1420023407',
processed='source(s_network)=0', processed='source(s_local)=18',
dropped='dst.sql(d_sql_syslog_temp_table#0,oracle,,,PTUD_SYSLOG,SLG_LOG_TEMP)=76155',
stored='dst.sql(d_sql_syslog_temp_table#0,oracle,,,PTUD_SYSLOG,SLG_LOG_TEMP)=91',
processed='src.none()=0', stamp='src.none()=0',
processed='source(s_snmptrapd)=0',
processed='global(payload_reallocs)=20575',
processed='global(msg_clones)=0',
processed='destination(d_sql_snmp_temp_table)=7697',
processed='destination(d_sql_syslog_temp_table)=1420079',
dropped='dst.sql(d_sql_snmp_temp_table#0,oracle,,,PTUD_SYSLOG,SLG_LOGS_SNMPTRAP_TEMP)=0',
stored='dst.sql(d_sql_snmp_temp_table#0,oracle,,,PTUD_SYSLOG,SLG_LOGS_SNMPTRAP_TEMP)=0',
processed='center(queued)=1435491', processed='destination(d_local)=18',
processed='global(sdata_updates)=55857', processed='center(received)=18',
processed='destination(d_snmptrap)=7697'

[root at centos65-x86 ~]# sestatus
SELinux status:                 disabled

[root at centos65-x86 ~]# cat /etc/sysconfig/selinux

# This file controls the state of SELinux on the system.
# SELINUX= can take one of these three values:
#     enforcing - SELinux security policy is enforced.
#     permissive - SELinux prints warnings instead of enforcing.
#     disabled - No SELinux policy is loaded.
SELINUX=disabled
# SELINUXTYPE= can take one of these two values:
#     targeted - Targeted processes are protected,
#     mls - Multi Level Security protection.
SELINUXTYPE=targeted

[root at centos65-x86 ~]# service iptables status
iptables: Firewall is not running.


-- 
Best regards!
------
Nguyen Trung Hieu
Mobile: +84904031032
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.balabit.hu/pipermail/syslog-ng/attachments/20150101/ca0aa0f7/attachment.htm 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: syslog-ng.conf
Type: application/octet-stream
Size: 3231 bytes
Desc: not available
Url : http://lists.balabit.hu/pipermail/syslog-ng/attachments/20150101/ca0aa0f7/attachment.obj 


More information about the syslog-ng mailing list