On 19.06.2015 16:01, Reindl Harald wrote:
Am 19.06.2015 um 15:56 schrieb Reindl Harald:
envelope=_SENDERDOMAIN_, from=_AUTHORDOMAIN_
syslog to SQL and you can xref all the info you need
that's a workaround and not a solution, there's a reason why the
spamfirewall is the *only* machine not logging to mysql because you
really don't want a dozen millions of sql-inserts each month
*YOU* don't want them. If you have a cluster of more than the one
"spamfirewall" it can be very practical to have central SQL logging.
and for messages without a MID you have currently no way at all to xfer
anything since you only see the rules and the result with *nothing* to
grep for
Postfix/MTA/Glue Session IDs, etc... having the data in a DB also allows
all kinds of stats.
Of course you are free to hack SA's logging and write out all you want
and then filter it out via syslog/regex.. now if that is more efficient
I/O-wise....