From the course: Cert Prep LPIC-1 Exam 102 (Version 5.0)
Unlock the full course today
Join today to access over 22,600 courses taught by industry experts or purchase this course individually.
About syslog, rsyslog, and syslog-ng - Linux Tutorial
From the course: Cert Prep LPIC-1 Exam 102 (Version 5.0)
About syslog, rsyslog, and syslog-ng
- [Instructor] Syslog, otherwise known as sysklogd, came into being in 1980. At that time, it could log single lines to a log file and specify the facility or service that the message is about, plus a log level and a message. It could log to remote servers over UDP protocol, but did not have congestion control. The syslog protocol became the de facto standard in the Linux and Unix world. Syslog had many limitations, so it needed to be replaced. 24 years after syslog came out, the rsyslog project was started, and is backwards compatible with sysklogd. Rsyslog supports timestamps with millisecond granularity and time zone information. It also supports the addition of the name of relays in the host fields to make it possible to track the path a given message has traversed. It supports reliable transport using TCP, supports GSS-API and TLS for security, and logging directly into various database engines. It also supports RELP,…
Practice while you learn with exercise files
Download the files the instructor uses to teach the course. Follow along and learn by watching, listening and practicing.
Contents
-
-
-
-
-
-
-
-
-
(Locked)
Locate and interpret system log files4m 57s
-
Read the system journal3m 23s
-
(Locked)
Configuration of logrotate2m 33s
-
(Locked)
Filter journal data by criteria1m 25s
-
(Locked)
Rsyslog actions1m 41s
-
(Locked)
Clear old systemd journal data2m 33s
-
(Locked)
Retrieve systemd journal data from a rescue system2m 18s
-
(Locked)
About syslog, rsyslog, and syslog-ng3m 32s
-
(Locked)
-
-
-
-
-
-
-
-
-