|
|||||||||||
|
Re: A tool like "logwatch" for a log server
From: Seth Mattinen <sethm(at)rollernet.us>
Date: Fri Sep 14 2007 - 11:32:57 EDT
>> Imagining that a lot of people here concentrate >> their logs in a log server, I was wondering if there are >> recommendation for a good log analyzer, something like >> logwatch, or documented procedure to get logs from various >> hosts checked and reported daily (maybe logcheck?). > > We aggregate with syslog-ng and analyze with splunk - > http://www.splunk.com/ > > Splunk isn't open source, but it's "the mutts". > Sort of related question: Does anybody (when aggregating logs to a dedicated logging host) stop logging to the local disk, or do you still do both local and remote logging? ~Seth -- To UNSUBSCRIBE, email to debian-isp-REQUEST@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.orgReceived on Fri Sep 14 11:32:18 2007 This archive was generated by hypermail 2.1.8 : Sun Oct 07 2007 - 00:07:53 EDT |
||||||||||
|
|||||||||||