Chinaunix首页 | 论坛 | 博客
  • 博客访问: 1798526
  • 博文数量: 184
  • 博客积分: 10122
  • 博客等级: 上将
  • 技术积分: 5566
  • 用 户 组: 普通用户
  • 注册时间: 2005-12-08 12:32
文章存档

2011年(1)

2008年(183)

我的朋友

分类: LINUX

2008-03-03 21:10:15

1.3. Why is syslog-ng needed?

Log messages contain information about the events happening on the hosts. Monitoring system events is essential for security and system health monitoring reasons.

# 注释 :日志消息包含有所发生的事件的信息,而监控系统所发生的事件是关系到系统安全/健康的重要手段

The original syslog protocol separates messages based on the priority of the message and the facility sending the message. These two parameters alone are often inadequate to consistently classify messages, as many applications might use the same facility — and the facility itself is not even included in the log message. To make things worse, many log messages contain unimportant information. The syslog-ng application helps you to select only the really interesting messages, and forward them to a central server.

# 注释 :原来的 syslog 协议是根据 facility 和 priority 来区分日志消息的,但一般来说这是不够的,因为很多应用程序会使用相同的 facility , 而且日志中有时会混杂有很多无用的消息。

# syslog-ng 可以帮你只选择你感兴趣的信息,并转发到一台日志服务器上。

Company policies or other regulations often require log messages to be archived. Storing the important messages in a central location greatly simplifies this process.

# 注释 :同时 syslog-ng 也可以帮你对日志进行归档。

阅读(843) | 评论(0) | 转发(0) |
给主人留下些什么吧!~~