linux 远程日志功能,Linux 配置远程日志

本文介绍了如何配置Linux日志服务器和客户机以实现远程日志功能。在日志服务器上,需要修改/etc/sysconfig/syslog配置文件,启用远程日志记录。在客户机上,需要修改/etc/syslog.conf文件,并添加一条将所有日志发送到日志服务器的规则,然后重启syslog服务。

摘要生成于 C知道 ,由 DeepSeek-R1 满血版支持, 前往体验 >

日志服务器上:

修改配置文件:/etc/sysconfig/syslog

原文:# Options to syslogd

# -m 0 disables 'MARK' messages.

# -r enables logging from remote machines

# -x disables DNS lookups on messages recieved with -r

# See syslogd(8) for more details

SYSLOGD_OPTIONS="-m 0 "# Options to klogd

# -2 prints all kernel oops messages twice; once for klogd to decode, and

#    once for processing with 'ksymoops'

# -x disables all klogd processing of oops messages entirely

# See klogd(8) for more details

KLOGD_OPTIONS="-x"

#

SYSLOG_UMASK=077

# set this to a umask value to use for all log files as in umask(1).

# By default, all permissions are removed for "group" and "other".

修改后:

# Options to syslogd

# -m 0 disables 'MARK' messages.

# -r enables logging from remote machines

# -x disables DNS lookups on messages recieved with -r

# See syslogd(8) for more details

SYSLOGD_OPTIONS="-m 0 -r -x"# Options to klogd

# -2 prints all kernel oops messages twice; once for klogd to decode, and

#    once for processing with 'ksymoops'

# -x disables all klogd processing of oops messages entirely

# See klogd(8) for more details

KLOGD_OPTIONS="-x"

#

SYSLOG_UMASK=077

# set this to a umask value to use for all log files as in umask(1).

# By default, all permissions are removed for "group" and "other".

客户机配置:

1. 修改配置文件:/etc/syslog.conf

原文:

# Log all kernel messages to the console.

# Logging much else clutters up the screen.

#kern.*       /dev/console

# Log anything (except mail) of level info or higher.

# Don't log private authentication messages!

*.info;mail.none;authpriv.none;cron.none  /var/log/messages

# The authpriv file has restricted access.

authpriv.*      /var/log/secure

# Log all the mail messages in one place.

mail.*       -/var/log/maillog

# Log cron stuff

cron.*       /var/log/cron

# Everybody gets emergency messages

*.emerg       *

# Save news errors of level crit and higher in a special file.

uucp,news.crit      /var/log/spooler

# Save boot messages also to boot.log

local7.*      /var/log/boot.log

修改后:

# Log all kernel messages to the console.

# Logging much else clutters up the screen.

#kern.*       /dev/console

# Log anything (except mail) of level info or higher.

# Don't log private authentication messages!

*.info;mail.none;authpriv.none;cron.none  /var/log/messages

# The authpriv file has restricted access.

authpriv.*      /var/log/secure

# Log all the mail messages in one place.

mail.*       -/var/log/maillog

# Log cron stuff

cron.*       /var/log/cron

# Everybody gets emergency messages

*.emerg       *

# Save news errors of level crit and higher in a special file.

uucp,news.crit      /var/log/spooler

# Save boot messages also to boot.log

local7.*      /var/log/boot.log

*.*                              @日志服务器ip

2. 重启syslog服务:/etc/init.d/syslog restart

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值