[logs] Realtime log checking with special features : any software ?

From: Gildas PERROT (perrotat_private)
Date: Thu Dec 20 2001 - 08:34:36 PST

  • Next message: Tina Bird: "[logs] Take a USENIX tutorial ONLINE (56930) (fwd)"

    Hi,
    
    I am looking for the best software to do realtime log checking (regex on
    patterns) with special features. I am using Redhat 6.x and have perl and C
    compiler installed.
    
    The special features are :
    
    - executing a command when pattern is found
    - limiting the number of times that the matched pattern has actions
    performed on it (throttle)
    - examining lines of text as they are added to logfile (tail mode)
    
    I already tried swatch 3.0.4 (http://www.oit.ucsb.edu/~eta/swatch/) which is
    supposed to do that but I had some problems with it :
    
    1) I noticed that with --tail-file mode, execution of a command doesn't
    occur as soons as pattern appears in logfile (there is a delay of nearly one
    minute)
    
    2) throttle values are not accepted.
    
    Thanks in advance for your help.
    
    Gildas.
    
    ---
    Gildas PERROT, perrotat_private
    Fluxus, 30, rue du Château des Rentiers, 75647 Paris Cedex 13   __o
    http://www.fluxus.net                                      ---_`\<,_
    Fluxus est une société B.T. Ignite                     ----- (_)/ (_)
    
    
    ---------------------------------------------------------------------
    To unsubscribe, e-mail: loganalysis-unsubscribeat_private
    For additional commands, e-mail: loganalysis-helpat_private
    



    This archive was generated by hypermail 2b30 : Thu Dec 20 2001 - 09:28:30 PST