Re: [logs] Alerts for postfix logs

From: Paul Robertson (proberts@private)
Date: Thu Nov 20 2003 - 14:43:17 PST

  • Next message: Daniel Cid: "[logs] Os-Hids v 0.2 available"

    On Fri, 21 Nov 2003, Russell Fulton wrote:
    
    > Does anyone have something equivalent for Postfix?
    
    egrep "(fatal|warning|error)" /var/log/maillog
    
    > We do the usual trick of chucking the mundane stuff so we can see any
    > unusual record but we also have real time watch for stuff that generates
    > 'Alerts' that we don't want to wait for the hourly report to find out
    > about.
    
    I like pflogsumm for summarizing logs and trending stuff.
    
    Paul
    -----------------------------------------------------------------------------
    Paul D. Robertson      "My statements in this message are personal opinions
    proberts@private      which may have no basis whatsoever in fact."
    probertson@private Director of Risk Assessment TruSecure Corporation
    _______________________________________________
    LogAnalysis mailing list
    LogAnalysis@private
    http://lists.shmoo.com/mailman/listinfo/loganalysis
    



    This archive was generated by hypermail 2b30 : Thu Nov 20 2003 - 14:55:51 PST