LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 12-26-2001, 11:33 PM   #1
sorry
LQ Newbie
 
Registered: Dec 2001
Posts: 1

Rep: Reputation: 0
Using syslog server for sonicwall


I have a sonicwall. Want to use linux for gathering the log from sonicwall and generate a report or send alert email out.
How can i do so?? Or are there a software in linux can be used?
 
Old 01-17-2002, 08:01 PM   #2
kervin
Member
 
Registered: Jan 2002
Location: Melbourne, FL.
Distribution: redhat
Posts: 168

Rep: Reputation: 31
does 'sonicwall' have a configurable syslog server option? Does it use standard syslog?

If so, you can. ( I don't know what a sonicwall is ) The syslog format is very popular, all our printers and routers log events to syslog. You need to start syslog with the option to allow from remote host. With syslog you can't say who logs and who doesn't as far as I know, but you can set up a firewall on the syslog server to do that. I think you need to set the syslogd with the '-r' option. You may need to edit the /etc/rc.d/init.d/syslog script to to add this argument.

If you want syslog to log different machines in different files you need to edit the /etc/syslog.conf file. 'man syslog.conf' for the format of that file. If you do not change this. syslog will put everything in /var/log/messages I believe. or something similar.

if you want to rotate your logs by size or period of time. For instance, I rotate my central syslog server's log ever week. With Redhat there's the logrotate script. 'man logrotate' for more information on that.

Finally you probably do not want to have to check the syslog file everytime only to see that nothing has happened. Well, you can use swatch or another log monitor tool http://www.oit.ucsb.edu/~eta/swatch/
There are others on http://freshmeat.net
swatch is popular.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Syslog Server MrJoshua Linux - Software 1 10-26-2005 02:56 PM
How to setup a syslog server anandhg02 Linux - General 7 12-28-2004 12:30 AM
Need to implemet Syslog server juanb Linux - Software 0 11-11-2004 03:37 AM
Setting up a Syslog Server salscozzari Linux - Networking 2 12-23-2003 08:48 AM
Linux server behind Sonicwall jbstew32 Linux - Networking 1 11-12-2003 10:18 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 07:26 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration