I have a rich rule with a log option, i.e.:

rule family="ipv4" (details) log level="warning" limit value="1/h"

This causes these things to get logged to journalctl

Jan 08 16:30:58 shorty.email-scan.com kernel: IN=eno2 OUT= MAC=...
Jan 08 16:33:05 shorty.email-scan.com kernel: IN=eno2 OUT= MAC=...

The particular details are not important.

I'm looking for a script or a tool that helps me to save some time and automate pulling these log entries, at periodic intervals, and mail a summary to me. Anyone know of any useful script or a utility for this?

Attachment: pgpv_14cOURq2.pgp
Description: PGP signature

-- 
_______________________________________________
users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to