I am monitoring centralized syslog files. I configured my elements so that they filter me out all log messages for ipmi. Someone knows how the filter for the logfiles works anf if it is a problem if a logfile is big (for example more than 1GB)?
logWatchSCG (/var/log/172.27.42.33/syslog) regex:test1 14 Jun 08:37:51 Jun 14 06:31:46 172. ... logWatchSCG trap.match (test1) 14 Jun 11:16:45 Jun 14 09:10:45 172. ...
logWatchSCG (/var/log/172.27.42.33/syslog) regex:test2 14 Jun 06:47:08 Jun 13 09:20:20 172. ...
Comment