>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>No in it's current implementation...sorry :-)
>
>
>On 7/30/07, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
> >
> > Greetings Thomas;
> >
> > Would there be any way to limit the hosts that a users
re-run install? I never did in the first place. All done manually.
>Zero our your config.php file, make sure it still exists, but writeable
>with
>nothing in it and then re-run the install.
>
>
>On 8/24/07, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
> >
> &
t; >
> >
> >
> > Thank you, and best regards,
> >
> > .vp
> >
> >
> > >From: "Clayton Dukes" <[EMAIL PROTECTED]>
> >
> > >Vadim,
> > >Can you possibly tell me exactly what you did so I can try to re-create
ump -d syslog > syslog.sql
>and send me that file (assuming the name of your DB is "syslog")
>
>
>On 8/23/07, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
> >
> > Problems still persist, their have been two days worth of
>logrorate.phprun.
> >
> &
Problems still persist, their have been two days worth of logrorate.php run.
Thanks in advance,
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Hi Vadim, catch up with me tomorrow and I'll try to help out...
>
>
>On 8/21/07, Vadim Pushkin <[EMAIL PRO
;
>Reply-To: [EMAIL PROTECTED]
>To: "Vadim Pushkin" <[EMAIL PROTECTED]>
>Dude, you're so screwed...heh
>Try running logrotate, I think that might help.
>Also, in the future, there's a script in scripts/ for cleaning up old
>tables
>:-)
>
>
>O
All;
OK, I screwed up, and I no longer use the logs.MRG file which would have
been an easy fix for me.
I've manually deleted several tables, older than 30 days, as my disk space
was overrun. Now I am not sure what to do and my initial page shows the
following error:
Query failed: Can't open
Greetings Thomas;
Would there be any way to limit the hosts that a users is able to view logs
from?
In my environment I do not want to let the Mail Admins see the logs from the
firewalls, and vice-versa.
Thank you,
.vp
>From: "Thomas Cort" <[EMAIL PROTECTED]>
>Here's a status update on the
t; wrote:
>>I don't know -- I haven't heard from the guy that was going to do it...
>>maybe he's reading this right now thinking, "hmmm...perhaps I should work
>>on
>>that" :-)
>>
>>
>>
>> On 7/10/07, Vadim Pushkin <[EMAIL
Not trying to be too pushy, but what is the status on merging the two codes
together? I can't wait for the ability to get AD/LDAP auth for users versus
having to create separate accounts and passwords.
Thank you,
.vp
>Adding the googlegroup email alias to this thread since we're slowly
>shifti
me to add
>you as an admin to the google project stuff? or anyone else?
>
>On 3/26/07, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>
>>
>>All;
>>
>>I see no reason as to why things like repository type/location and ac new
>>name for this project sh
This is great!
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Hey Tom, are you working from the latest rev on my server? if so, you can
>send it to me :-)
>
>
>On 3/26/07, Thomas Cort <[EMAIL PROTECTED]> wrote:
>>
>> > Has there been any success in getting the two dists merged?
>>
>>I'm still
to maintain that list sort of faded (he started
>>a new job).
>>
>>
>>On 3/26/07, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>> >
>> > 'ello Thomas and/or Clayton;
>> >
>> > Has there been any success in getting the two dists me
p-syslog-ng/
>
>
>On 3/21/07, Clayton Dukes <[EMAIL PROTECTED]> wrote:
>>
>>In addition to this, Michael Freeman had, at one point, created a
>>Google code repository for us - I'd suggest we continue with that.
>>
>>
>>On 3/21/07, Va
All;
This is all very exciting, I can't wait to at least try out the AD
authentication abilities.
Based on discussions on this list with regards to the future and goals of
this project moving forward, here is what I've been able to ascertain:
Immediate TODO:
1. All development php-syslog-ng
give
these examples because perhaps a filter of hostnames would help limit this?
Thanks again,
.vp
>From: "Vadim Pushkin" <[EMAIL PROTECTED]>
>To: [EMAIL PROTECTED], [EMAIL PROTECTED]
>CC: php-syslog-ng-support@lists.sourceforge.net, [EMAIL PROTECTED]
>Subject: Re:
Hello All;
First, kudos to Clayton and Tom, I hope you guys find this info helpful. It
is not meant to harm or offend anyone, but rather to form some constructive
discussion.
I just wanted to add my two cents to this thread. Aside from the ability to
support AD and LDAP user, which by the wa
Hello All;
I would like to know if anyone has on the roadmap the possibility of adding
EventID, with hyperlinks to Microsoft Technet (or similiar) for those events
that are captured in syslog via Windows machines? Similiar to how it is
done with CEMDB.
Would it be prudent to add another colum
x27;ll see if I can scrub the doc and
>send it out for inclusion in the next release.
>
>
>On 9/20/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
> > Hi Clayton;
> >
> > 1. The attached logtotate.php script seems to have worked, but so was
>the
> > one befo
Greetings;
I love the extra functionality that cemdb provides, even though I am not
currently logging from that many routers/Cisco boxes.
Most of my logging is to consolidate the logs from many different mail
servers and SMTP gateways, allowing both myself and others to search those
logs when
at I am running and from what Ian posted, but I
>will
>run this and let you know my results tomorrow.'
>
>Thanks!
>
>.vp
>
> >Hmmm...
> >Not sure, try this script:
> >
> >#!/usr/bin/php
>>
>>[...SNIP...]
> >
> >
> >O
$oldStr, $newStr, $createQuery);
>
> $oldStr = "ENGINE=MyISAM";
> $newStr = "ENGINE=MRG_MyISAM";
> $createQuery = str_replace($oldStr, $newStr, $createQuery);
> $oldStr = "TYPE=MyISAM";
> $newStr = "ENGINE=MRG_MyI
27;s why, if you set retention to 2, it will delete anything older.
>Try setting to 90
>
>
>On 9/19/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>HI Clayton;
>>
>>Welcome back!
>>
>>I am still having one issue, I am able to see data when using the pu
of options in my pulldown) within my config.php as:
define('LOGROTATERETENTION', 2);
Thanks in advance all,
.vp
>I've confirmed that the logrotate fixes are working as well.
>
>
>On 8/31/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>Great news Ian. A
| YES | MUL | NULL||
>| msg | text| YES | | NULL||
>| seq | bigint(20) unsigned | | PRI | NULL| auto_increment |
>+--+-+--+-+-++
>9 rows in set (0.00
Shane;
Did you load the cemdb table? Could you please do a show tables from your
db and send the output? Also, it might help if you could do a screenshot of
your problems.
.vp
>From: "Shane Presley" <[EMAIL PROTECTED]>
>Hi guys, any thoughts on my error with v2.9? (Column headers do not
my database passwords, and name (syslog).
>
>But I can't log in. It tells me bad username/password. Not sure why
>-- the table names are the same? I kept my old php install around as
>-bak, and I can log in from that interface using the same
>username/password that fails in v2
've used it for a week and it fixes the GUI login problem and deletes
>the old tables as specified by the retention config setting.
>
>On 8/29/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>
>>Help!
>>
>>Has anyone been able to fix or test Matts new log
---+--+-+-+---+
>| Field | Type| Null | Key | Default | Extra |
>+---+-+--+-+-+---+
>| username | varchar(32) | | PRI | | |
>| pwhash| varchar(40) | YES | | NULL| |
>| sessio
Login to mysql and type:
mysql> use syslog;
mysql> show tables;
Then, for each of the tables described, except for the ones created with
logrotate, i.e. logs20060828, type in:
mysql> desc actions;
Send me the output, I will try to help with the proper commands to modify
your existing table.
Thanks Matt;
I've just replaced the original with yours. I will report my finding in the
next 3 days. The one thing that I've noticed with both the original and
yours is it's inablity to run more than once per day, if you do the
all_logs.MRG gets wiped out and complains about logs20060830 alr
al Message-
>From: "Vadim Pushkin" <[EMAIL PROTECTED]>
>To: "[EMAIL PROTECTED]" <[EMAIL PROTECTED]>
>Cc: "php-syslog-ng-support@lists.sourceforge.net"
>; "[EMAIL PROTECTED]"
><[EMAIL PROTECTED]>
>Sent: 29/08/06 15:07
>S
versions? I am running 2.7
>at the moment, and my logrotate script breaks (I have to run it
>twice).
>
>I'd be willing to test on 2.7 if that helps. I'll be doing a 2.9
>install soon, but not this week.
>
>Shane
>
>On 8/29/06, Vadim Pushkin <[EMAIL PROTECTE
Help!
Has anyone been able to fix or test Matts new logrotate? So far, this is
the only bug, albeit a big one, in this entire package!
Thank you,
.vp
>From: "Vadim Pushkin" <[EMAIL PROTECTED]>
>To: [EMAIL PROTECTED], php-syslog-ng-support@lists.sourceforge.net
>Su
Line 592 is *not* blank, it is the end of this file and contains:
?>
Which is the end of the php file itself.
.vp
>From: Michael Bryant <[EMAIL PROTECTED]>
>To: [EMAIL PROTECTED], Clayton Dukes <[EMAIL PROTECTED]>
>CC: php-syslog-ng-support@lists.sourceforge.net
>Subject: Re: [Php-syslog-ng-s
bject: Re: [Php-syslog-ng-support] Logrotate.php
>Date: Thu, 17 Aug 2006 12:40:07 +0100
>... The script therefore becomes
>
>
>-- snip --
>-- snip --
>
>Not tested it yet ... Waiting for tonight's logrotate.
>
>Matt
>
>-Original Message-
>From: Vadim P
OK, done, twice :-(
>From: "Freeman, Michael" <[EMAIL PROTECTED]>
>To: <[EMAIL PROTECTED]>,"Vadim Pushkin" <[EMAIL PROTECTED]>
>CC: <[EMAIL PROTECTED]>,
>Subject: RE: [Php-syslog-ng-support] logrotate.php error
>Please use
What I've found wrong so far is the following:
1. all_logs.MRG contains the name of one more table than it should. For
instance, my log rotate schedule is currently set to 2, but for some reason
it keeps tables for 4 days. My all_logs.MRG file ends up looking like this:
logs
logs20060811
logs
se it.
>You said unzip, but I assume you meant Gunzip, correct?
>
>
>On 7/25/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>
>>1. Did you unzip emd.xml.gz? I was told that this was not necessary, but I
>>got these errors until I inzipped this file.
>>
>>2
1. Did you unzip emd.xml.gz? I was told that this was not necessary, but I
got these errors until I inzipped this file.
2. Did you create the cemdb table within the syslog DB?
.vp
>From: "Freeman, Michael" <[EMAIL PROTECTED]>
>I just loaded php-syslog-ng in IE for the first time and the CEMDB
Hello Again;
I am still having many trouble upon running logrotate (latest version -
2.9.2), I am running from Linux. MySql is 4.1.19.
Here is how I run logrotate, and what my problems are:
Via cron, I do:
45 23 * * * /html/phpsyslogng/scripts/logrotate.php 2>&1
So, you can see that I am
. It would have the
>added benefit of making the host-table for that user statically generated
>and would greatly remove the need for caching the host-table for those
>users that are limited.
>
>/Jason
>
>On Jul 21, 2006, at 4:10 PM, Vadim Pushkin wrote:
>
>>
All;
I was wondering if anyone has gotten the user_access table to actually work?
My user_access table looks like the following:
mysql> select * from user_access;
+--+--++
| username | actionname | access |
+--+--++
| user1 | add_user
, but
*not* dynamically, that would be far too ineffective...
>From: "Freeman, Michael" <[EMAIL PROTECTED]>
>That is sub-optimal.. It should be done "on-demand"..
>
>-Original Message-
>From: Vadim Pushkin [mailto:[EMAIL PROTECTED]
>Sent: Wednesday,
would I do that?
>
>-Original Message-
>From: Vadim Pushkin [mailto:[EMAIL PROTECTED]
>Sent: Wednesday, July 19, 2006 5:00 PM
>To: Freeman, Michael; php-syslog-ng-support@lists.sourceforge.net
>Cc: [EMAIL PROTECTED]
>Subject: RE: [Php-syslog-ng-support] Host count on m
As well it should be. MERGELOGTABLE simply states to use all_logs as the
log/table that contains todays, as well as all other days worth of data in a
MERGED format.
logs is what is the same as TODAY only.
logsDATE is the same as yesterday, the day before yesterday, etc. Again,
MERLOGTABLE is
to be issued a restart command at the end of the logrotate. Does
anyone know if this is true?
>Or does it not matter due to the nature of MERGE tables? Can someone
>please clue me in? 8)
What version of MySql are you running?
.vp
>-Original Message-
>From:
Look in includes/search.php and search for hostcount and hostarray. Mine
shows this properly, have you re-run the reload cache?
.vp
>From: "Freeman, Michael" <[EMAIL PROTECTED]>
>The counter that displays how many hosts are in the database on the
>mainpage only shows two hosts, from the samp
iginal Message-----
>From: [EMAIL PROTECTED]
>[mailto:[EMAIL PROTECTED] On Behalf
>Of Vadim Pushkin
>Sent: Saturday, July 15, 2006 2:00 PM
>To: php-syslog-ng-support@lists.sourceforge.net
>Subject: [Php-syslog-ng-support] LogRotate (V2.9.2 tested)
>
>Hello All;
>
>I'
is means I have to get this corefonts stuff on Solaris
>in order to use Jpgraph? What a bummer..
>-Original Message-
>From: [EMAIL PROTECTED]
>[mailto:[EMAIL PROTECTED] On Behalf
>Of Vadim Pushkin
>Sent: Monday, July 17, 2006 3:41 PM
>To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
quot;, mktime(0, 0, 0, date("m"), date("d"),
date("Y") ));
Thank you,
.vp
>From: Joel <[EMAIL PROTECTED]>
>Reply-To: Joel <[EMAIL PROTECTED]>
>To: Vadim Pushkin <[EMAIL PROTECTED]>, [EMAIL PROTECTED],
>[EMAIL PROTECTED]
>Vadim, n
[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: "Freeman, Michael" <[EMAIL PROTECTED]>
>CC: "Vadim Pushkin" <[EMAIL PROTECTED]>, [EMAIL PROTECTED],
>php-syslog-ng-support@lists.sourceforge.net
>Subject: Re: [Php-syslog-ng-support] Errors Upon L
created. I will dig deeper and try to figure out why, but I suspect
that it is because the db is not declared on the "CREATE" portion.
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: "Freeman, Michael" <[EMAIL PR
Downloaded the cabextract from the site below, as well as verdan.exe. Using
cabextract, I opened the exe file and renamed the ttf files without caps,
and moved them into the appropriate directory, I had to create it. In any
case, graphs are now working.
.vp
>From: "Vadim Pushkin&
Install php-jpgraph on FC4/5 with this command:
yum install jpgraph
Still looking for what to download for the veranda.ttf font. Supopsedly,
according to th e jphraph.php, you can go to
http://corefonts.sourceforge.net for the fonts...
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-T
'ello;
The newest version of phpsyslog-ng now makes all that is contained in the
"Message" portion of the GUI, a hyperlink to nowhere, unless it is a
recognized Cisco error. No big deal, but whenever I try to track a
particuliar email, it typically has at least three entries, one for the
recei
TECTED]>
>Reply-To: Joel <[EMAIL PROTECTED]>
>To: Vadim Pushkin <[EMAIL PROTECTED]>,
>php-syslog-ng-support@lists.sourceforge.net
>CC: [EMAIL PROTECTED]
>Subject: Re: [Php-syslog-ng-support] Errors Upon Login, Using Latest Code
>Date: Mon, 17 Jul 2006 07:57:34 -0700 (
onger seeing anything at all when I do a search or
tail. Am I supposed to now select the currecnt date whenever I wish to do a
search?
.vp
>From: Joel <[EMAIL PROTECTED]>
>Reply-To: Joel <[EMAIL PROTECTED]>
>To: Vadim Pushkin
><[EMAIL PROTECTED]>,php-syslog-n
les.
Query failed: Can't find file: 'all_logs.MRG' (errno: 2)
[root scripts]#
Login via the GUI also shows the same error.
Am I missing something? all_logs *is* a valid tablename.
.vp
>From: "Vadim Pushkin" <[EMAIL PROTECTED]>
>To: [EMAIL PROTECTED], php-sysl
nt is now? Are there two
or more branches to this project?
Thanks all,
.vp
>From: Joel <[EMAIL PROTECTED]>
>Reply-To: Joel <[EMAIL PROTECTED]>
>To: Vadim Pushkin
><[EMAIL PROTECTED]>,php-syslog-ng-support@lists.sourceforge.net
>CC: [EMAIL PROTECTED]
>Su
Hello;
I am using the latest code, and as previously stated in another post, I have
LOGROTATE et to 2. Well, I've reached that limit after "3" days, and on the
next rotate, I am now getting this message upon login:
Query failed: Can't find file: 'all_logs.MRG' (errno: 2)
Also, somewhat relate
Hello All;
I've downloaded and am testing the latest (2.9.2) and have set LOGROTATE to
2 within my config.php file. So far, I now have 3 days worth of data, when
I should have just 2.
I have *not* re-created my SQL db, and assuming this does not matter, am I
the only one with this problem?
T
This would certainly make this feature *very* useful for others who are
looking at devices other than Cisco gear.
Would I be off base by suggesting that all email addresses, or perhaps all
text for that matter, be a hyperlink to further searches within the DB? The
one nice thing about Splunk i
All;
I am now running the latest code, LOGROTATE is configured for 2 (dayes),
allowing me a chance to determine if there are going to be any issues upon
reaching that limit as in the previous version. Last night I should have
reached my limit, I have two days worth of data stored already. Upo
I'm excited ;-)
>Todo:
>Better user management system with Radius/Tacacs/Ldap support
>
>Is that better? ;-)
>
>
>On 7/13/06, Vadim Pushkin <[EMAIL PROTECTED]> wrote:
>>
>> >Todo: A TODO File ;-)
>>
>>I ask about the TODO file becaus
>Todo: A TODO File ;-)
I ask about the TODO file because I've noticed that as user admin, I am able
to create another user account with only the ability to "reload cache",
however that user is still able to create other user accounts, with full
access. No big deal now, since there is no way t
Hi Clayton;
Any plans on maintaining a TODO file?
Also, does anyone know how to install php-gd or a php with gd support under
FC4 or FC5? I am using php 5.0.4, which I got using yum.
Thanks!
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: php-syslog-ng-suppor
>Subject: Re: [Php-syslog-ng-support] virtual roots,Was: Re: Problem
>with date restricted searches
>Date: Thu, 13 Jul 2006 10:26:47 -0500
>MIME-Version: 1.0
>
>
>On Thu, 2006-07-13 at 15:18 +, Vadim Pushkin wrote:
> > Problem solved, I was running in a virtual serv
, does
emdb.pl just add to the cemdb table?
Thank you Clayton,
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: "Vadim Pushkin" <[EMAIL PROTECTED]>
>CC: php-syslog-ng-support@lists.sourceforge.net
>Subject: Re: [Php-sy
m: Jason Martens <[EMAIL PROTECTED]>
>To: php-syslog-ng-support@lists.sourceforge.net
>Subject: Re: [Php-syslog-ng-support] Problem with date restricted searches
>Date: Thu, 13 Jul 2006 10:02:22 -0500
>On Thu, 2006-07-13 at 11:41 +, Vadim Pushkin wrote:
> > Tried both, IE an
I've just installed the latest version of 2.9 and found the files contained
within the scripts/cemdb directory to be compressed. I've uncompressed them
as I am trying to determine why the messages that should appear on
mouse-over for messages diaplayed are not working.
Also, can anyone tell me
Tried both, IE and Firefox, same reults. I don't believe that I need to do
anything on my server side, right?
>
>It's already there -- I think (based on your other email) that you may
>be having trouble with JS.
>Try with IE and/or Firefox?
>
>
>On 7/12/06,
Is the plan to deploy a javascript function for cal on the calendar images?
Thanks,
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: "Jason Martens" <[EMAIL PROTECTED]>
>CC: php-syslog-ng-support@lists.sourceforge.net
>Subject: Re: [Php-syslog-ng-support] Problem
Thank you Clayton,
My problem was that I had changed the ADMIN in config.php, but that entry
did not exist in the DB :-(
Great work by the way, I sincerely hope you keep it up!
.vp
>From: "Clayton Dukes" <[EMAIL PROTECTED]>
>Reply-To: [EMAIL PROTECTED]
>To: "Va
Hello All;
I've just downloaded 2.9.1 and I am trying to login with my passwd from 2.8,
but I am unable to. I am sure that I am using the same password, but...
Can anyone tell me how to alter the sql table users to change the password
for user admin? I have fill access to mysql. (it is in pw
75 matches
Mail list logo