mirror of
https://github.com/kernelkit/infix.git
synced 2026-07-30 04:33:00 +02:00
Infix has the catch-all /var/log/debug, and now also /var/log/routing for debug messages from Frr. The log file /var/log/syslog now catches *all* messages except auth*, which may contain secrets, except debug messages. Contrast this with /var/log/messages which only logs info/notice/warn -- i.e., no error and above log messages. Due to the way syslogd parses /etc/syslog.conf et al, we override the default in Infix to disable the default /var/log/syslog, otherwise we would get duplicates to the same log file. Signed-off-by: Joachim Wiberg <troglobit@gmail.com>
85 lines
2.1 KiB
Plaintext
85 lines
2.1 KiB
Plaintext
# /etc/syslog.conf - Configuration file for syslogd(8)
|
|
#
|
|
# For information about the format of this file, see syslog.conf(5)
|
|
#
|
|
|
|
#
|
|
# First some standard log files. Log by facility.
|
|
#
|
|
auth,authpriv.* /var/log/auth.log
|
|
#*.*;auth,authpriv.none -/var/log/syslog
|
|
|
|
#cron.* /var/log/cron.log
|
|
#daemon.* -/var/log/daemon.log
|
|
kern.* -/var/log/kern.log
|
|
#lpr.* -/var/log/lpr.log
|
|
mail.* -/var/log/mail.log
|
|
#user.* -/var/log/user.log
|
|
|
|
#
|
|
# Logging for the mail system. Split it up so that
|
|
# it is easy to write scripts to parse these files.
|
|
#
|
|
#mail.info -/var/log/mail.info
|
|
#mail.warn -/var/log/mail.warn
|
|
mail.err /var/log/mail.err
|
|
#mail.*;mail.!=info -/var/log/mail
|
|
#mail,news.=info -/var/log/info
|
|
|
|
# The tcp wrapper loggs with mail.info, we display all
|
|
# the connections on tty12
|
|
#
|
|
#mail.=info /dev/tty12
|
|
|
|
#
|
|
# Some "catch-all" log files.
|
|
#
|
|
#*.=debug;\
|
|
# auth,authpriv.none;\
|
|
# news.none;mail.none -/var/log/debug
|
|
*.=info;*.=notice;*.=warn;\
|
|
auth,authpriv.none;\
|
|
cron,daemon.none;\
|
|
mail,news.none -/var/log/messages
|
|
|
|
#
|
|
# Store all critical events, except kernel logs, in critical RFC5424 format.
|
|
# Overide global log rotation settings, rotate every 10MiB, keep 5 old logs,
|
|
#
|
|
#*.=crit;kern.none /var/log/critical ;rotate=10M:5,RFC5424
|
|
|
|
# Example of sending events to remote syslog server.
|
|
# All events from notice and above, except auth, authpriv
|
|
# and any kernel message are sent to server finlandia in
|
|
# RFC5424 formatted output.
|
|
#
|
|
#*.notice;auth,authpriv.none;
|
|
# kern.none\ @finlandia ;RFC5424
|
|
|
|
# Emergencies are sent to anyone logged in
|
|
#
|
|
*.=emerg *
|
|
|
|
# Priority alert and above are sent to the operator
|
|
#
|
|
#*.alert root,joey
|
|
|
|
#
|
|
# Secure mode, same as -s, none(0), on(1), full(2). When enabled
|
|
# only logging to remote syslog server possible, with full secure
|
|
# mode, not even that is possible. We default to prevent syslogd
|
|
# from opening UDP/514 and receving messages from other systems.
|
|
#
|
|
secure_mode 1
|
|
|
|
#
|
|
# Global log rotation, same as -r SIZE:COUNT, command line wins.
|
|
#
|
|
#rotate_size 1M
|
|
#rotate_count 5
|
|
|
|
#
|
|
# Include all config files in /etc/syslog.d/
|
|
#
|
|
include /etc/syslog.d/*.conf
|