o: rsyslog@lists.adiscon.com
> > > Subject: Re: [rsyslog] Rsyslog 5.8.10 & 7.4.10 : RELP + Failover Servers
> > > Issue
> > >
> > > Can you reproduce this with the currently supported 8.4.2 version?
> > >
> > > 2014-10-31 11:33 GMT+01:00 An
10 & 7.4.10 : RELP + Failover Servers
> > Issue
> >
> > Can you reproduce this with the currently supported 8.4.2 version?
> >
> > 2014-10-31 11:33 GMT+01:00 Anwar El fatayri :
> >
> > > Hey David,
> > > I've already tried to
h the currently supported 8.4.2 version?
>
> 2014-10-31 11:33 GMT+01:00 Anwar El fatayri :
>
> > Hey David,
> > I've already tried to set it ($ActionResumeRetryCount) to default (0) and
> > 1 with both versions (5.8.10 & 7.4.10) but the problem wasn
da...@lang.hm
> To: rsyslog@lists.adiscon.com
> Subject: Re: [rsyslog] Rsyslog 5.8.10 & 7.4.10 : RELP + Failover Servers Issue
>
> On Fri, 31 Oct 2014, Anwar El fatayri wrote:
>
> > Hey all,
> > I wish to have the following centralized logging system :
> >
> > 1) a
Hey all,
I wish to have the following centralized logging system :
1) all rsyslog clients should send their logs to a primary server over RELP
2) If the primary server goes down, rsyslog clients should switch to a
secondary rsyslog-RELP server
Config File :
$ModLoad omrelp
### First Part ###
>
> It's probably a bug with this very outdated version. Can you reproduce it
> with 8.2?
>
> Rainer
>
>
> On Wed, Apr 30, 2014 at 10:49 AM, Anwar El fatayri <
> anwar.fata...@hotmail.co.uk> wrote:
>
> > Hey all,
> > I've c
Hey all,
I've configured rsyslog to stop droping messages :
$SystemLogRateLimitInterval 0$SystemLogRateLimitBurst 0
However, I still get this message in /var/log/messages :
imuxsock begins to drop messages from pid 26441 due to rate-limiting
26441 is the pid of named... Any ideas ??
Anwar
Hey all,
Does Rsyslog 7.4.2 provide TLS Encryption and certificate-based authentication
for RELP ??
If not ... will that be included in the RHEL7 stable release ??
Thx in advance.
El Fatayri Anwar
___
.10 : Rsyslog not opening (creating) new
> log files when receiving HUP signal
>
> On Mon, 14 Apr 2014, Anwar El fatayri wrote:
>
> > Hey all,
> > Im trying to use file system attributes to make log files oppened in append
> > mode for writing (chattr +a logfile
Hey all,
Im trying to use file system attributes to make log files oppened in append
mode for writing (chattr +a logfile). This is my logrotate configuration file :
/var/log/jboss-as/server.log{create 0640 root jboss-as-logs
rotate 4dateextdailycompress
It's working ...
Thx a lot.
El Fatayri Anwar
> Date: Wed, 9 Apr 2014 09:23:30 -0700
> From: da...@lang.hm
> To: rsyslog@lists.adiscon.com
> Subject: Re: [rsyslog] rsyslog 5.8.10 Log Files permissions
>
> On Wed, 9 Apr 2014, Anwar El fatayri wrote:
>
> > He
e source to change the default), we aren't going to know about it.
>
> If you look at (or post) the full rsyslog config files, we can point out what
> the setting is.
>
> David Lang
>
>
> On Tue, 8 Apr 2014, Anwar El fatayri wrote:
>
> > Date: Tue, 8 Apr 2014
> Sent from phone, thus brief.
> Am 08.04.2014 13:29 schrieb "Anwar El fatayri" >:
>
> >
> >
> > El Fatayri Anwar
> > ok ... But how can i do that ?
> > Anwar
> >
> >
> >
> > > Date: Tue, 8 Apr 2014 12:52:48 +0200
El Fatayri Anwar
ok ... But how can i do that ?
Anwar
> Date: Tue, 8 Apr 2014 12:52:48 +0200
> From: rgerha...@hq.adiscon.com
> To: rsyslog@lists.adiscon.com
> Subject: Re: [rsyslog] rsyslog 5.8.10 Log Files permissions
>
> On Tue, Apr 8, 2014 at 12:42 PM, Anwar El fata
on.com
> To: rsyslog@lists.adiscon.com
> Subject: Re: [rsyslog] rsyslog 5.8.10 Log Files permissions
>
> On Tue, Apr 8, 2014 at 11:18 AM, Anwar El fatayri <
> anwar.fata...@hotmail.co.uk> wrote:
>
> > Hey all,
> > I wrote a script that creates a generic rsyslog
Hey all,
I wrote a script that creates a generic rsyslog configuration files in
rsyslog.d for all my machines. I have one problem with my log files
permissions. This is the permissions config file that my script generates
/etc/rsyslog.d/zz-002-permissions.log :
$FileGroup jboss-as-logs$umask 000
Hi Muhammad,
1) There's a debug format for rsyslog messages (RSYSLOG_DebugFormat):
For example, I log all apache (httpd) logs into the local5 facility of rsyslog
(Jboss into the local2 facility etc...)The following line will write all local5
logs into /var/log/debugfmt :
local5.* /var/log/debugfm
Hi,
I have the following error code with rsyslog 7.6.2 (librelp 1.2.4) : 2360
imrelp: could not activate relp TLS, librelp does not support it! [try
http://www.rsyslog.com/e/2360 ]
> Date: Mon, 17 Mar 2014 14:41:55 +0100
> From: fri...@adiscon.com
> To: rsyslog@lists.adiscon.com
> Subject: [rsysl
> > I've seen similar problems when the OS package installed in one place and
> > the other package installed somewhere else.
> >
> > make sure that you have removed all traces of the OS provided rsyslog.
> >
> > find / -name "*rsyslog*" will show y
ave removed all traces of the OS provided rsyslog.
>
> find / -name "*rsyslog*" will show you everything on the system.
>
> David Lang
>
> On Thu, 13 Mar 2014, Anwar El fatayri wrote:
>
>> Date: Thu, 13 Mar 2014 20:20:28 +0100
>> From: Anwar El fatayri
Then i didn't really understand your question ... I left the company so i'm not
in front of the machine anymore.
I'll check it tomorrow...
Thanks
Sent from my iPhone
On 13 mar 2014, at 19:33, "Michael Biebl" wrote:
> 2014-03-13 19:20 GMT+01:00 Anwar El
Yeah ... I had rsyslog 5.8.10 before then i've updated it to 7.6.0 and now i
have 7.6.1 ...
Sent from my iPhone
On 13 mar 2014, at 18:18, "Michael Biebl" wrote:
> 2014-03-13 17:59 GMT+01:00 Anwar El fatayri :
>> hey,
>> I've installed librelp1.2.3 and updat
hey,
I've installed librelp1.2.3 and updated rsyslog to v7.6.1.
However, i get the following error when i try to load the imrelp module !!!
activation of module imrelp failed [try http://www.rsyslog.com/e/-3 ]
Anwar
> Date: Thu, 13 Mar 2014 16:43:45 +0100
> From: fri...@adiscon.com
> To: rsyslog@li
now. You can see
> in a previous Email step-by-step instructions on installing the latest
> stable (3.2.12) which should make RELP work.
>
> On Mon, Mar 10, 2014 at 2:34 PM, Anwar El fatayri
> wrote:
> > heyI installed gnutls-2.8.5-13.el6_5.x86_64.rpm but i still have the same
;ve installed rsyslog-relp and you have no file *relp.so in your
> system? This means that either something is wrong with the package or
> the way you search for that file. Or something else :)
>
> Not sure where to go from here, really. Can you check the package
> (unpack it) and run a
t) and run a `find / -name *relp.so`?
>
> On Wed, Mar 5, 2014 at 11:13 AM, Anwar El fatayri
> wrote:
> > I installed the following yum repository :
> > wget http://rpms.adiscon.com/v7-stable/rsyslog.repo -O
> > /etc/yum.repos.d/rsyslog.repo
> > and the i updated rsysl
the rsyslog-relp package from that repository?
>
> David Lang
>
> On Tue, 4 Mar 2014, Anwar El fatayri wrote:
>
> > Date: Tue, 4 Mar 2014 18:17:23 +0100
> > From: Anwar El fatayri
> > Reply-To: rsyslog-users
> > To: rsyslog-users
> > Subject: Re:
I installed the following yum repository :
wget http://rpms.adiscon.com/v7-stable/rsyslog.repo -O
/etc/yum.repos.d/rsyslog.repo
and the i updated rsyslog :
yum update rsyslog
I'm using CentOS 6.3
> Date: Wed, 5 Mar 2014 10:08:35 +0100
> From: fri...@adiscon.com
> To: rsyslog@lists.adiscon.com
>
not load module '/lib64/rsyslog/imrelp.so (version
7.6.0)
did you install the rsyslog-relp package from that repository?
David Lang
On Tue, 4 Mar 2014, Anwar El fatayri wrote:
> Date: Tue, 4 Mar 2014 18:17:23 +0100
> From: Anwar El fatayri
> Reply-To: rsyslog-users
>
] could not load module '/lib64/rsyslog/imrelp.so
> (version 7.6.0)
>
> Same issue as:
> http://kb.monitorware.com/usr-lib64-librelp-undefined-symbol-gnutls-certificat-t12109.html
>
> ?
>
>
>
> On Tue, Mar 4, 2014 at 7:28 AM, Anwar El fatayri
> wrote:
> &
Do you have a file that matches *relp.so somewhere in your system?
>
> On Tue, Mar 4, 2014 at 5:51 PM, Anwar El fatayri
> wrote:
> > i installed the package from the adiscon repository.
> > Installed PackagesName: rsyslogArch: x86_64Version :
> > 7.
om
> Subject: Re: [rsyslog] could not load module '/lib64/rsyslog/imrelp.so
> (version 7.6.0)
>
> Hey Anwar,
>
> Did you do --enable-relp when you compiled rsyslog? If you installed
> from some packages, there is a rsyslog-relp package or something like
> that.
Hey,
I installed rsyslog v7-stable in order to setup rsyslog with a RELP TLS secured
connection. However, i'm getting this error when i restart the rsyslog service :
could not load module '/lib64/rsyslog/imrelp.so', dlopen:
/usr/lib64/librelp.so.0: undefined symbol:
gnutls_certificate_set_verif
untill the connection is back again and then decompress; (Here rsyslog
should be configured to delay the dequeuing process)
}
I just don't know how RELP detects that the connection with the server was lost
to start saving data on disk and vice versa.
Thanks.
Anwar El Fatayri
> Date: Wed
Hey,At the moment, we have a centralized logging architecture which is not
reliable (via Ossec) and this is why we're trying to use rsyslog - RELP instead
of Ossec to reliably centralize our logs.
However, we have more than 300 hosts per Datacenter that generate lots of logs.
In case of any brea
35 matches
Mail list logo