Multiple logs

Reindl Harald h.reindl at thelounge.net
Sun Dec 27 18:55:40 UTC 2015



Am 27.12.2015 um 19:36 schrieb Matus UHLAR - fantomas:
>>> On 26.12.15 20:30, kev wrote:
>>>> I am using bind9 with ubuntu 14.04. I was wondering how to log by
>>>> indivudual IP.  Ive googled it but didnt find what i was looking
>>>> for.Thanks,
>
>> Am 27.12.2015 um 18:07 schrieb Matus UHLAR - fantomas:
>>> I'd choose logging at kernel level in iptables firewall.
>>> ULOG and ulogd can log to libpcap format
>
> On 27.12.15 19:12, Reindl Harald wrote:
>> since when is iptables a logging tool?
>
> since it can log, it can be used for logging.

- used
+ abused

>> just use the default query log and grep within cron
>
> yes, why log selectively when we can log everything and then drop the
> rest. Especially when it requires much more computing power and overhead...

http://www.zytrax.com/books/dns/ch7/logging.html
syslog versus file

http://www.rsyslog.com/doc/v8-stable/configuration/filters.html

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20151227/b23e2f60/attachment.bin>


More information about the bind-users mailing list