For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

hkobayas_201582's avatar
hkobayas_201582
Icon for Nimbostratus rankNimbostratus
May 15, 2015

parition info is added in the following log

We try to send following logs to syslog server and then we want to separate each partition log using partitions

 

Is Partition info added on in the following log?

 

local0BIG-IP specific message /var/log/ltm local1EM specific messages/var/log/em APM specific messages/var/log/apm local2GTM and Link Controller specific messages/var/log/gtm local3ASM specific messages/var/log/asm local4ITCM portal and server (iControl) specific messages/var/log/ltm local5Packet Filtering specific messages/var/log/pktfilter local6HTTPD specific messages/var/log/httpd/httpd_errors local7Linux specific boot messages/var/log/boot.log cronMessages related to the cron daemon/var/log/cron daemonMessages related to system daemons (including named and ntpd)/var/log/daemon.log kernKernel messages/var/log/kern.log mailMail system messages/var/log/maillog authUser authentication messages that do not contain sensitive information/var/log/secure authprivUser authentication messages that contain sensitive information/var/log/secure userMessages related to user processes/var/log/user.log

 

2 Replies

  • i think not all the logs have partition name such as kernel log, haven't they?

     

    anyway, i understand we can customize log format bigip sends to remote syslog. it is syslog-ng configuration.

     

    am i lost?

     

  • Can you specify to witch log partition info was added

     

    exmaple only local0BIG-IP specific message /var/log/ltm ?

     

    are there any good link regarding to syslog