forked from gluster/glusterfs
-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathgluster-rsyslog-5.8.conf
51 lines (43 loc) · 1.78 KB
/
gluster-rsyslog-5.8.conf
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
##### gluster.conf #####
#
## If you want to log every message to the log file instead of
## intelligently suppressing repeated messages, set off to
## RepeatedMsgReduction. This change requires rsyslog restart
## (eg. run 'service rsyslog restart')
#
#$RepeatedMsgReduction off
$RepeatedMsgReduction on
#
## The mmcount module provides the capability to count log messages by
## severity or json property of given app-name. The count value is added
## into the log message as json property named '$msgid'
#
$ModLoad mmcount
$mmcountKey gf_code # start counting value of gf_code
$template Glusterfsd_dynLogFile,"/var/log/glusterfs/bricks/%app-name%.log"
$template Gluster_dynLogFile,"/var/log/glusterfs/%app-name%.log"
$template GLFS_Template,"%msgid%/%syslogfacility-text:::uppercase%/%syslogseverity-text:::uppercase% [%TIMESTAMP:::date-rfc3339%] %msg:::sp-if-no-1st-sp%%msg:::drop-last-lf%\n"
#
## Pass logs to mmcount if app-name is 'gluster'
#
if $app-name contains 'gluster' then :mmcount:
if $app-name contains 'glusterfsd' then ?Glusterfsd_dynLogFile;GLFS_Template
if $app-name contains 'gluster' and not ( $app-name contains 'glusterfsd' ) then ?Gluster_dynLogFile;GLFS_Template
#
## Sample configuration to send a email alert for every 50th mmcount
#
#$ModLoad ommail
#$ActionMailSMTPServer smtp.example.com
#$ActionMailFrom rsyslog@example.com
#$ActionMailTo glusteradmin@example.com
#$template mailSubject,"50th message of gf_code=9999 on %hostname%"
#$template mailBody,"RSYSLOG Alert\r\nmsg='%msg%'"
#$ActionMailSubject mailSubject
#$ActionExecOnlyOnceEveryInterval 30
#if $app-name == 'glusterfsd' and $msgid != 0 and $msgid % 50 == 0 \
#then :ommail:;RSYSLOG_SyslogProtocol23Format
#
#
## discard logs where app-name is 'gluster' as we processed already
#
if $app-name contains 'gluster' then ~