User Tools

Site Tools


использование_протокола_syslog

This is an old revision of the document!


Использование протокола SYSLOG

!!! add access list logging

FreeBSD

[gate:~] # grep syslog /etc/rc.conf 
syslogd_flags="-a 192.168.X.0/24:*"

[gate:~] # grep local0 /etc/syslog.conf 
local0.*                                        /var/log/cisco.log

[gate:~] # touch /var/log/cisco.log

[gate:~] # /etc/rc.d/syslogd restart

[gate:~] # tail -f /var/log/cisco.log

Ubuntu (syslogd)

root@gate:~# cat /etc/default/syslogd
...
SYSLOGD="-r"

root@gate:~# cat /etc/syslog.conf
...
local0.*      /var/log/cisco.log
 
root@gate:~# touch /var/log/cisco.log

root@gate:~# chown syslog:adm /var/log/cisco.log

root@gate:~# /etc/init.d/sysklogd restart

root@gate:~# tail -f /var/log/cisco.log

Ubuntu (rsyslogd)

root@gate:~# rcsdiff  /etc/rsyslog.conf
20,21c20,21
< #$ModLoad imudp
< #$UDPServerRun 514
---
> $ModLoad imudp
> $UDPServerRun 514

root@gate:~# cat /etc/rsyslog.d/30-cisco.conf 
local0.*                        -/var/log/cisco.log

root@gate:~# touch /var/log/cisco.log 
root@gate:~# chown syslog:adm /var/log/cisco.log

root@gate:~# service rsyslog stop

root@gate:~# service rsyslog start

Настройка cisco

Вывод логов на экран telnet сессии

switch.corpX.un# terminal monitor

Отправка логов на syslog сервер

logging facility local0
logging gate
использование_протокола_syslog.1284028284.txt.gz · Last modified: 2013/05/22 13:50 (external edit)