LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 06-27-2007, 12:26 PM   #1
tekhead2
Member
 
Registered: Apr 2004
Distribution: slackware/FreeBSD/Vector
Posts: 291

Rep: Reputation: 52
Squid and Dansguardian | pipe syslog to Splunk?


I have squid and dansguardian setup and working great. I also have a splunk server running.I would like to be able to send the access.log files from dansguardian to my splunk server. I was wondering if there was a way to do this using syslog. Is there any way to get splunk to tail this file even? I would really like to keep any eye on the incoming requests, but I don't want to have to keep a terminal up constantly. Any help would be great!

Last edited by tekhead2; 06-27-2007 at 12:28 PM.
 
Old 06-28-2007, 06:04 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
are they on the same box or different ones? if they are the same box then you can just tell splunk to tail the file direct from disk. if it's a seperate box, then if the data is logged to syslog (you can make squid itself do this with the "access_log syslog" directive, or something similar...) then if you use a modern syslog solution like syslog-ng then you can absolutely make it spit a copy of the log across to a tcp connection on splunk as well as writing it to a local file. alternatively, make the text log file accessible readonly over nfs and splunk can then directly read the file over the network.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
syslog not opening named pipe. fluxrad Linux - Software 5 02-10-2009 05:31 AM
Dansguardian and Squid yeeha! Linux - Networking 4 08-21-2006 01:22 AM
syslog not writing to named pipe (fc4) darbo Linux - Software 0 02-17-2006 07:35 PM
dansguardian + squid shafey Linux - Security 2 12-31-2005 11:42 AM
Dansguardian/Squid HELP! Prizam Linux - Software 3 09-23-2005 06:30 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 08:59 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration