LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Newbie
User Name
Password
Linux - Newbie This Linux forum is for members that are new to Linux.
Just starting out and have a question? If it is not in the man pages or the how-to's this is the place!

Notices



Reply
 
Search this Thread
Old 12-08-2009, 09:18 AM   #1
Helptek
LQ Newbie
 
Registered: Dec 2009
Posts: 1

Rep: Reputation: 0
Bfd logs to remote syslog-ng server


Good evening

I have an issue that I need your opinion.

I have apf + bfd installed in my server. Currently I'm sending all logs ( syslog ) to a remote logging server ( syslog-ng )

However I've checked , that some information is not being captured, I guess.

In fact if I have a look in bfd_log on local server, those Ips blocked are not listed in remote logging server. All info generated to bfd_log and apf_log is not being received by log server,

Probably BFD and APF logs ( excepting TCP DROP ) are not being captured by syslog in local machine or syslog can't send it to my remote logging machine.

I've checked in conf.bfd some log settings and I have this:

TLOG_PATH="$INSTALL_PATH/tlog"

# syslog kernel log path
KERNEL_LOG_PATH="/var/log/messages"

# syslog auth log path
AUTH_LOG_PATH="/var/log/secure"

# bfd application log path
BFD_LOG_PATH="/var/log/bfd_log"

# log all events to syslog [0 = off; 1 = on]
OUTPUT_SYSLOG="1"

# log file path for syslog logging
OUTPUT_SYSLOG_FILE="$KERNEL_LOG_PATH"


Syslog support appears to be up. BFD version is 1.2
I have this issue in other machines with bfd installed with version 0.9 which can't find in conf.bfd the option "OUTPUT_SYSLOG".

My syslog.conf only contains this change:

*.debug @xx.xx.xx.xx


Have you already been reported about this issue?




Best Regards

Thanks
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
AIX audilt logs to a remote syslog server manikyam AIX 1 12-03-2009 02:47 AM
Sending 3rd party logs to remote syslog server OlRoy Linux - Server 3 12-24-2008 07:06 PM
Will the BFD or any brute force detector work if I am logging to a remote syslog serv abefroman Linux - Software 2 06-02-2008 06:08 AM
syslog server receives logs from remote device dwarf007 Linux - Security 3 01-24-2007 08:49 AM
Getting logs from a remote syslog ganninu Linux - Newbie 4 09-10-2003 10:05 AM


All times are GMT -5. The time now is 09:14 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration