mail log parsing script in need of makeover


 
Thread Tools Search this Thread
Top Forums Shell Programming and Scripting mail log parsing script in need of makeover
# 8  
Old 05-18-2008
Java

Sorry about the lame test data, it was very generic...I didn't want to disclose email addresses of our customers. Thats probably why your end version of the script didn't provide consistent output. I was testing with different data of course, so maybe my next script should be one which parses a log and scrambles the email and IP addresses, so I can provide more representative test data when posting. Smilie Anyhow, ERA, your advice was great and just what I needed to help guide me through this.

Here is the code that I ended up with after taking some of your suggestions and adding a hash to get rid of duplicates.


Code:
#!/usr/local/bin/perl

my %sender_emails = () ;
my %recipient_emails = () ;
my %recipient_count = () ;
my %uniqueEntries = ();

# location of logfile

$logfile = '/data/log/maillog';

open(LOG, $logfile);

while (<LOG>)
{
($msgMon, $msgDay, $msgTime, $msgHost, $msgCmd, $QID, $from_to) = split(/\s+/, $_) ;

        next if (/from=<>/) ;
        next if (/from=<root>/) ;

        if (($_ =~ /from=</) && ($_ =~ /qmgr/))
        {
                ($tmpString, $from) = split("from=<", $_);
                ($from,$tmpString)  = split(">", $from);
                $sender_emails {$QID} = $from;
        }
        elsif (($_ =~ /to=</) && ($_ =~ /smtp/))
        {
                ($tmpString, $to) = split("to=<", $_);
                ($to,$tmpString) = split(">", $to);
                $recipient_emails {$QID} = $recipient_emails {$QID} .  "$to "   ;
                $recipient_count {$QID}++   ;

        }
}

close(LOG);

foreach $myQID (keys %sender_emails)
{
        my %uniqueRcpt  = () ;

        $myto = $recipient_emails{$myQID} ;
        $myfrom = $sender_emails{$myQID} ;
        $tocount = $recipient_count{$myQID} ;

        next if $tocount >= 6;

        @rcpt = split(/\s+/, $myto);

        foreach $myrcpt(@rcpt)
        {
                $uniqueRcpt {$myrcpt} = $myfrom;
        }

        foreach $myrcpt (keys %uniqueRcpt)
        {

                $myfrom = $uniqueRcpt{$myrcpt} ;

                $senderRcptKey =  $myfrom . ":"  . $myrcpt ;

                $uniqueEntries{$senderRcptKey}  = 1 ;
        }
}

$outbound_emails = '/data/whitelisting/outbound_emails';
open(OBE,">$outbound_emails");

foreach $myPair (keys %uniqueEntries)
{

        print $myPair . "\n" ;
        print OBE $myPair . "\n" ;

}

close(OBE);

Its perhaps not the most efficient script but it runs in the middle of the night on mail machines which are behind a load balancer. So I got away with it for now, but I will certainly try to update it when my perl scripting skills have improved. Thanks again for all your help!
Smilie
Login or Register to Ask a Question

Previous Thread | Next Thread

10 More Discussions You Might Find Interesting

1. Shell Programming and Scripting

Parsing a log file and creating a report script

The log file is huge and lot of information, i would like to parse and make a report . below is the log file looks like: REPORT DATE: Mon Aug 10 04:16:17 CDT 2017 SYSTEN VER: v1.3.0.9 TERMINAL TYPE: prod SYSTEM: nb11cu51 UPTIME: 04:16AM up 182 days 57 mins min MODEL, TYPE, and SN:... (8 Replies)
Discussion started by: amir07
8 Replies

2. Shell Programming and Scripting

Bash Script - Mail Secure.log

I'm putting together a fairly simple script, to check "secure.log" for content and email the results in a cron, nightly. The script runs fine upon manual execution, it's a problem when ran in cron. This is on a Mac server. Any thoughts? #!bin/bash #Email secure.log, nightly. Subject="Secure... (6 Replies)
Discussion started by: Nvizn
6 Replies

3. Shell Programming and Scripting

Issue with awk script parsing log file

Hello All, I am trying to parse a log file and i got this code from one of the good forum colleagues, However i realised later there is a problem with this awk script, being naive to awk world wanted to see if you guys can help me out. AWK script: awk '$1 ~ "^WRITER_" {p=1;next}... (18 Replies)
Discussion started by: Ariean
18 Replies

4. Shell Programming and Scripting

Script for parsing vertical log into horizontal

Hi, I have log like this : And i want the output like below : I have try using awk but doesn't work awk ' /ffff /{ts=$1} f && /SectorAntenna\=1/{sa1=$3} f && /SectorAntenna\=2/{sa2=$3} f && /SectorAntenna\=3/{sa3=$3} { s= ts "|" sa1 "|" sa2 "|" sa3 print s f=0 }' (7 Replies)
Discussion started by: justbow
7 Replies

5. Shell Programming and Scripting

Log parsing script

Hello, I have a script that parses logs and sends the output via digitally signed and encrypted email. This script uses grep -v to exclude patterns in a file. The problem I have is if this is run via cron none of the pattern matching seems to occur. If I run it by hand it runs exactly as it is... (2 Replies)
Discussion started by: wpfontenot
2 Replies

6. Shell Programming and Scripting

Script for Parsing Log File

Working on a script that inputs an IP, parses and outputs to another file. A Sample of the log is as follows: I need the script to be able to input IP and print the data in an output file in the following format or something similar: Thanks for any help you can give me! (8 Replies)
Discussion started by: Winsarc
8 Replies

7. Shell Programming and Scripting

Performance of log parsing shell script very slow

Hello, I am an absolute newbie and whatever I've written in the shell script (below) has all been built with generous help from googling the net and this forum. Please forgive any schoolboy mistakes. Now to the qn, my input file looks like this - 2009:04:03 08:21:41:513,INFO... (7 Replies)
Discussion started by: sowmitr
7 Replies

8. Shell Programming and Scripting

Shell script to parsing log

Hi I Have log like this : 0 234: { 3 2: 04 EE 7 14: '20081114081' 23 1: 00 79 10: '38809' 91 15: '528111510010159' 143 29: 'Streaming/downloading service' 174 3: 'MTV' 179 43: 'rtsp://172.28/MTV2GO-Loop.sdp' 224 1: 05 ... (10 Replies)
Discussion started by: justbow
10 Replies

9. Shell Programming and Scripting

Help with script parsing a log file

I have a large log file, which I want to first use grep to get the specific lines then send it to awk to print out the specific column and if the result is zero, don't do anything. What I have so far is: LOGDIR=/usr/local/oracle/Transcription/log ERRDIR=/home/edixftp/errors #I want to be... (3 Replies)
Discussion started by: mevasquez
3 Replies

10. Shell Programming and Scripting

Shell script for parsing 300mb log file..

am relatively new to Shell scripting. I have written a script for parsing a big file. The logic is: Apart from lot of other useless stuffs, there are many occurances of <abc> and corresponding </abc> tags. (All of them are properly closed) My requirement is to find a particular tag (say... (3 Replies)
Discussion started by: gurpreet470
3 Replies
Login or Register to Ask a Question