10-20-2011
Quote:
My experience is that zabbix is more flexible than logzilla... and neither is really what I would call 'great' for analysis.
Remember, collecting, aggregating and filtering "events" is not really "analysis"; and neither is simple "event triggering" based on simple pattern matching rules.
When I look at logzilla (as in zabbix), I don't see any analysis capabilities; only aggregation, filtering, and simple rule based pattern matching. This is really not "analysis" in my view.
For example, "analysis" would be a software process that can detect, from Apache2 log files, when an IP address is a "bot" (web spider) without looking at the user agent (UA). This is not easy in the general case and requires some pretty sophisticated analysis over time.
Yeah, I`m using zabbix too. But I can`t get it work well with log files. I only use it for specified process, event, etc.. I wrote bash scripts and then use zabbix trapper. Zabbix is good for system monitoring, but not for log files I think.
10 More Discussions You Might Find Interesting
1. UNIX for Advanced & Expert Users
I have a syslog server running Solaris 5.9 that is used exclusively to receive log messages from several thousand Cisco devices. The syslog server is and has been running fine for several months..
I would like to take all messages logged from the Cisco devices on this server and forward them... (2 Replies)
Discussion started by: getwithrob
2 Replies
2. UNIX for Dummies Questions & Answers
Does it exist centralized tools on unix for managing users of all servers (like windows AD) ? (1 Reply)
Discussion started by: astjen
1 Replies
3. UNIX for Dummies Questions & Answers
hi,
i am beginner i am using small lan setup all machine fc 6 and fc7 8 and fedora 9 also i want to know how to configure centralized log server on fedora 9 step by step any one help me
Thanks (0 Replies)
Discussion started by: poswer
0 Replies
4. HP-UX
Hi everybody
I need to analyze syslog file in HP UX
Is there any log analayzer for this file?
Regards (3 Replies)
Discussion started by: m_arab
3 Replies
5. UNIX for Advanced & Expert Users
Hello All,
I am working on SuSe Linux Platform. Some times ago i got an issue with an application for which i had to update that in all desktops (SLED == SuSe Linux Desktop).
Since this time number of desktops were less then it was possible to go and update package manually. But in... (1 Reply)
Discussion started by: shirsha
1 Replies
6. IP Networking
Hello all,
i want to view my iptables log on web interface, with chart (in option, and this is not my priority).
What is the best program for this?
I have Ubuntu server.
Thanks !
:) (0 Replies)
Discussion started by: Pacifiste95
0 Replies
7. AIX
I have a following requirement in production
system 1 : LINUX
User: abcd
system 2: AIX (it is hosting a production DB)
Requirement
user abcd from system 1 should have read access on archive log files created by DB on system 2. The log files are created with permissions 540 by user ora ,... (2 Replies)
Discussion started by: amitnm1106
2 Replies
8. Programming
Hi all
What is the qualification required by Linux/Solaris System Administrator to become a Linux/Solaris System Programmer as to gain complete knowledge on computers.
Thanks (1 Reply)
Discussion started by: Tlogine
1 Replies
9. Shell Programming and Scripting
Hello!
I have a small shell project that is due next week, that I'd appreciate some help with.
task: Write a shell program that can analyze at least 2 types of log files and print them in an easily readable way. Make it so that you can switch between log file types. The two file types should be... (1 Reply)
Discussion started by: malfiory
1 Replies
10. Homework & Coursework Questions
Hello! I'd like some help with this assignment.
1. The problem statement, all variables and given/known data:
1)Write a shell script that can uses two types of files as inputs, apache.log and apache.error.log
2)Make it so that you can switch between the two file types
3)Make it so that the... (5 Replies)
Discussion started by: malfiory
5 Replies
LEARN ABOUT DEBIAN
ip2host
IP2HOST(1) User Contributed Perl Documentation IP2HOST(1)
NAME
ip2host - Resolves IPs to hostnames in web server logs
SYNOPSIS
ip2host [OPTIONS] [cache_file] < infile > outfile
infile - Web server log file.
outfile - Same as input file, but with IPs resolved to hostnames.
Options:
--children=... Number of child processes to spawn (default: 40)
--timeout=... Seconds to wait on DNS response (default: 20)
--buffer=... Maximum number of log lines to keep in
memory (default: 50000)
--flush=... Number of lines to process before flushing
output buffer (default: 500)
--cache=... Filename to use as disk cache (default: none)
--ttl=... Number of seconds before IPs cached on disk are expired
(default: 604800 - One week)
DESCRIPTION
This is a faster, drop-in replacement for the logresolve utility distributed with the Apache web server.
It's been reported to work under Linux, FreeBSD, Solaris, Tru64, and IRIX.
AUTHOR
Maurice Aubrey <maurice.aubrey+ip2host@gmail.com>
Based on the logresolve.pl script by Rob Hartill.
COPYRIGHT
Copyright 1999-2007, Maurice Aubrey <maurice.aubrey+ip2host@gmail.com>.
This module is free software; you may redistribute it and/or modify it under the same terms as Perl itself.
README
Resolves IPs to hostnames in web server logs. This is a faster, drop-in replacement for the logresolve utility distributed with the Apache
web server.
SCRIPT CATEGORIES
Web
perl v5.14.2 2012-02-15 IP2HOST(1)