On 19.06.2015 16:01, Reindl Harald wrote:

Am 19.06.2015 um 15:56 schrieb Reindl Harald:
envelope=_SENDERDOMAIN_, from=_AUTHORDOMAIN_

syslog to SQL and you can xref all the info you need

that's a workaround and not a solution, there's a reason why the
spamfirewall is the *only* machine not logging to mysql because you
really don't want a dozen millions of sql-inserts each month

*YOU* don't want them. If you have a cluster of more than the one "spamfirewall" it can be very practical to have central SQL logging.

and for messages without a MID you have currently no way at all to xfer
anything since you only see the rules and the result with *nothing* to
grep for

Postfix/MTA/Glue Session IDs, etc... having the data in a DB also allows all kinds of stats.

Of course you are free to hack SA's logging and write out all you want and then filter it out via syslog/regex.. now if that is more efficient I/O-wise....





Reply via email to