close
安裝syslog-ng 2.0.9 (http://www.balabit.com/support/community/products/)
wget http://www.balabit.com/downloads/files/syslog-ng/sources/stable/src/syslog-ng-2.0.9.tar.gz
wget http://www.balabit.com/downloads/files/syslog-ng/sources/stable/src/eventlog-0.2.7.tar.gz
先安裝syslog-ng所需eventlog package
tar xfvz eventlog-0.2.7.tar.gz
cd eventlog-0.2.7
./configure
make && make install
再安裝syslog-ng
tar xfvz syslog-ng-2.0.9.tar.gz
cd syslog-ng-2.0.9
export PKG_CONFIG_PATH=/usr/local/lib/pkgconfig/
./configure
make
make install
cp contrib/fedora-packaging/syslog-ng.init /etc/rc.d/init.d/syslog-ng
chmod 755 /etc/rc.d/init.d/syslog-ng
exec="/usr/local/sbin/syslog-ng"
cp contrib/fedora-packaging/syslog-ng.sysconfig /etc/sysconfig/syslog-ng
SYSLOGNG_OPTIONS="-ve -f /etc/syslog-ng/syslog-ng.conf"
cp contrib/fedora-packaging/syslog-ng.logrotate /etc/logrotate.d/syslog-ng
chkconfig syslog-ng on
檢查iptables是否有開放udp port 514 (或tcp 514)
iptables -L
若尚未開放port 514,於/etc/sysconfig/iptables加入
-A RH-Firewall-1-INPUT -p udp -m udp --dport 514 -j ACCEPT
重新啟動iptables服務,以套用新rule
service iptables restart
全站熱搜