Code: Select all
Aug 16 23:25:36 comp.net stunnel: LOG5[16]: Service [syslog-ng] accepted connection from 127.0.0.1:34141
Aug 16 23:25:36 comp.net stunnel: LOG5[16]: s_connect: connected 10.0.0.32:20514
Aug 16 23:25:36 comp.net stunnel: LOG5[16]: Service [syslog-ng] connected remote server from 172.16.0.2:41188
Aug 16 23:25:37 comp.net syslog-ng[4206]: syslog-ng starting up; version='3.22.1'
Aug 16 23:25:37 comp.net syslog-ng[4206]: Syslog connection established; fd='14', server='AF_INET(127.0.0.1:514)', local='AF_INET(0.0.0.0:0)'
Aug 16 23:25:37 comp.net stunnel: LOG5[17]: Service [syslog-ng] accepted connection from 127.0.0.1:45869
Aug 16 23:25:37 comp.net stunnel: LOG5[17]: s_connect: connected 10.0.0.32:20514
Aug 16 23:25:37 comp.net stunnel: LOG5[17]: Service [syslog-ng] connected remote server from 172.16.0.2:41190
Aug 16 23:27:16 comp.net syslog-ng[4234]: syslog-ng starting up; version='3.22.1'
Aug 16 23:27:16 comp.net syslog-ng[4234]: Syslog connection established; fd='14', server='AF_INET(127.0.0.1:514)', local='AF_INET(0.0.0.0:0)'
Aug 16 23:27:16 comp.net stunnel: LOG5[18]: Service [syslog-ng] accepted connection from 127.0.0.1:38213
Aug 16 23:27:16 comp.net stunnel: LOG5[18]: s_connect: connected 10.0.0.32:20514
Aug 16 23:27:16 comp.net stunnel: LOG5[18]: Service [syslog-ng] connected remote server from 172.16.0.2:41192
Aug 16 23:30:02 comp.net syslog-ng[4298]: syslog-ng starting up; version='3.22.1'
Aug 16 23:30:02 comp.net syslog-ng[4298]: Syslog connection established; fd='14', server='AF_INET(127.0.0.1:514)', local='AF_INET(0.0.0.0:0)'
Aug 16 23:30:02 comp.net stunnel: LOG5[19]: Service [syslog-ng] accepted connection from 127.0.0.1:37777
Aug 16 23:30:02 comp.net stunnel: LOG5[19]: s_connect: connected 10.0.0.32:20514
Aug 16 23:30:02 comp.net stunnel: LOG5[19]: Service [syslog-ng] connected remote server from 172.16.0.2:41196
Aug 16 23:32:56 comp.net syslog-ng[4298]: syslog-ng shutting down; version='3.22.1'
Aug 16 23:33:21 comp.net syslog-ng[4441]: syslog-ng starting up; version='3.22.1'
Aug 16 23:33:21 comp.net syslog-ng[4441]: Syslog connection established; fd='14', server='AF_INET(127.0.0.1:514)', local='AF_INET(0.0.0.0:0)'
Aug 16 23:33:21 comp.net stunnel: LOG5[20]: Service [syslog-ng] accepted connection from 127.0.0.1:35619
Aug 16 23:33:21 comp.net stunnel: LOG5[20]: s_connect: connected 10.0.0.32:20514
Aug 16 23:33:21 comp.net stunnel: LOG5[20]: Service [syslog-ng] connected remote server from 172.16.0.2:41312Code: Select all
[ebuild R ] app-admin/syslog-ng-3.22.1::gentoo USE="-amqp -caps -dbi -geoip -geoip2 -http -ipv6 -json -kafka -libressl -mongodb -pacct -python -redis -smtp -snmp -spoof-source -systemd -tcpd" PYTHON_SINGLE_TARGET="python3_6 -python2_7 -python3_5 (-python3_7)" PYTHON_TARGETS="python2_7 python3_5 python3_6 (-python3_7)" 4865 KiB
[ebuild R ] net-misc/stunnel-5.50-r1::gentoo USE="ssl -ipv6 -libressl (-selinux) -stunnel3 -tcpd" 951 KiB
Code: Select all
@version: 3.22
#
# Syslog-ng default configuration file for Gentoo Linux
# https://bugs.gentoo.org/426814
@include "scl.conf"
options {
stats_freq(43200);
use_fqdn(yes);
keep_hostname(yes);
use_dns(yes);
log_fifo_size(10000);
};
source src {
unix-stream("/dev/log");
internal();
file("/proc/kmsg");
};
destination messages { file("/var/log/messages" owner(root) group(adm) perm(0640)); };
destination lpr { file("/var/log/lpr.log"); };
destination mail { file("/var/log/mail.log" owner(root) group(adm) perm(0640)); };
destination authlog { file("/var/log/auth.log" owner(root) group(adm) perm(0640)); };
destination d_sec {
program("/usr/bin/sec -input=\"-\" -conf=/etc/sec/sec.conf -log=/var/log/sec.log -pid=/var/run/sec.pid");
};
destination console { usertty("root"); };
destination console_all { file("/dev/tty12"); };
filter f_lpr { facility(lpr); };
filter f_mail { facility(mail); };
filter f_dhcp { facility(local7); };
filter f_messages { level(info..emerg) and not facility(mail,lpr); };
filter f_emergency { level(emerg); };
filter f_auth { facility(auth); };
filter f_authpriv { facility(auth, authpriv); };
log { source(src); filter(f_lpr); destination(lpr); };
log { source(src); filter(f_mail); destination(mail); };
log { source(src); filter(f_messages); destination(messages); };
log { source(src); filter(f_emergency); destination(console); };
log { source(src); filter(f_authpriv); destination(authlog); };
destination loghost {tcp("127.0.0.1" port(514));};
log { source(src); filter(f_messages); destination(loghost); };
log { source(src); destination(d_sec); };Thanks!
hanji

