[syslog-ng] Using patterndb in syslog-ng

Scot Needy scotrn at gmail.com
Wed Aug 31 06:58:00 CEST 2016


	

Can someone point me in the right direction on how to use update-patterndb for syslog-ng ? 

Downloaded current git syslog-ng-patterndb to /opt/syslog-ng/etc/patterndb.d/, but not sure how to load and test it. 

Am I doing something wrong ? 


bin/pdbtool  merge -r --glob \*.pdb -D /opt/syslog-ng/etc/patterndb.d -p /opt/syslog-ng/etc/patterndb.xml 

[@ROOT] sbin/syslog-ng -f /opt/syslog-ng/etc/syslog-ng.conf

[2016-08-31T00:55:54.978717] Non-numeric correlation state ID found, assuming a literal '@' character. To avoid confusion when using a literal '@' after a macro or template function, write '@@' in the template.; Template='${temp.su_username}@${temp.su_tty}’
blah… 
blah..
[2016-08-31T00:55:54.978978] Non-numeric correlation state ID found, assuming a literal '@' character. To avoid confusion when using a literal '@' after a macro or template function, write '@@' in the template.; Template='${temp.sudo_username}@unknown’ 




More information about the syslog-ng mailing list