User Tools

Site Tools


использование_протокола_syslog

This is an old revision of the document!


Использование протокола SYSLOG

!!! add access list logging

FreeBSD

[gate:~] # grep syslog /etc/rc.conf 
syslogd_flags="-a 192.168.X.0/24:*"

[gate:~] # grep local0 /etc/syslog.conf 
local0.*                                        /var/log/cisco.log

[gate:~] # touch /var/log/cisco.log

[gate:~] # /etc/rc.d/syslogd restart

[gate:~] # tail -f /var/log/cisco.log

Ubuntu (syslogd)

root@gate:~# cat /etc/default/syslogd
...
SYSLOGD="-r"

root@gate:~# cat /etc/syslog.conf
...
local0.*      /var/log/cisco.log
 
root@gate:~# touch /var/log/cisco.log

root@gate:~# chown syslog:adm /var/log/cisco.log

root@gate:~# /etc/init.d/sysklogd restart

root@gate:~# tail -f /var/log/cisco.log

Ubuntu (rsyslogd)

root@gate:~# rcsdiff  /etc/rsyslog.conf
20,21c20,21
< #$ModLoad imudp
< #$UDPServerRun 514
---
> $ModLoad imudp
> $UDPServerRun 514

root@gate:~# cat /etc/rsyslog.d/30-cisco.conf 
local0.*                        -/var/log/cisco.log

root@gate:~# touch /var/log/cisco.log 
root@gate:~# chown syslog:adm /var/log/cisco.log

root@gate:~# service rsyslog stop

root@gate:~# service rsyslog start

Настройка cisco

switch.corpX.un# terminal monitor
switch.corpX.un#wr t
...
!
logging facility local0
logging gate
!
использование_протокола_syslog.1284025997.txt.gz · Last modified: 2013/05/22 13:50 (external edit)