Skip to main content

All Questions

Tagged with
0 votes
1 answer
4k views

Log messages containing a specific string to another file in rsyslogd

I want to save my log messages generated by iptables to another file via rsyslogd. Currently I use this code from /etc/rsyslog.d/20-custom.conf: # Log cron to cron.log and not to syslog *.*;cron,...
Chris's user avatar
  • 153
1 vote
0 answers
786 views

rsyslogd: How to prevent logging in the /var/kern.log file and redirecting to another file?

I am trying to redirect iptables log to another file. Based upon my reading on the net, I did the following: In my iptables rule, I have rules like: iptables -A INPUT -s ... -j LOG --log-prefix "...
Sunny's user avatar
  • 369
0 votes
1 answer
1k views

Syslog cannot start

I run rsyslog on Ubuntu server. after rsyslog starts, it restarts in a loop. here is a piece of /var/log/syslog: Aug 13 16:05:50 ip-10-92-237-215 rsyslogd: rsyslogd's groupid changed to 103 Aug 13 ...
sunny's user avatar
  • 185
1 vote
0 answers
646 views

how to get logs in DD/MM/YYYY format and ipaddress format using rsyslog in ubuntu

Feb 4 10:32:57 master sshd[2070]: pam_unix(sshd:session): session opened for user root by (uid=0) Feb 4 10:32:59 master sshd[2070]: Received disconnect from 192.168.0.107: 11: disconnected by user ...
Sarde's user avatar
  • 111
1 vote
0 answers
550 views

Running a remote syslog server

I have a Mac dev machine configured to forward certain syslog entries to a remote syslog host. It's configured to forward them to my Ubuntu server. The Ubuntu server currently has rsyslog installed (...
user55680's user avatar
5 votes
2 answers
11k views

auth.log is empty (Ubuntu)

The /var/log/auth.log file in my Ubuntu 9.04 is empty. syslogd is running and /etc/syslog.conf content is as follows. Any help? Thanks. # /etc/syslog.conf Configuration file for syslogd. # # ...
Vinicius Braz Pinto's user avatar
1 vote
2 answers
311 views

Understading the output of syslogd -d

Ubuntu What is the meanding of 80, F and X in the following output of syslogd -d? 0: X X X X FF X X X X X FF X X X X X X X X X X X X X X FILE: /var/log/auth.log (unused) 1: ...
user avatar