D
Size: a a a
D
D😼
cat /etc/rsyslog.d/01-json-template.confесли нужно парсить логи - то пропустите через logstash и там сделайте
template(name="json-template"
type="list") {
constant(value="{")
constant(value="\"@timestamp\":\"") property(name="timereported" dateFormat="rfc3339")
constant(value="\",\"@version\":\"1")
constant(value="\",\"message\":\"") property(name="msg" format="json")
constant(value="\",\"sysloghost\":\"") property(name="hostname")
constant(value="\",\"severity\":\"") property(name="syslogseverity-text")
constant(value="\",\"facility\":\"") property(name="syslogfacility-text")
constant(value="\",\"programname\":\"") property(name="programname")
constant(value="\",\"procid\":\"") property(name="procid")
constant(value="\"}\n")
}
tail of /etc/rsyslog.conf
*.* @ip:port;json-template
YB
YB
YB
D
YB
YB
SP
YB
SP
AS
TF
SP
AS
SP
AS