- 积分
- 16841
在线时间 小时
最后登录1970-1-1
|
马上注册,结交更多好友,享用更多功能,让你轻松玩转社区。
您需要 登录 才可以下载或查看,没有账号?开始注册
x
Ubuntu 14.04.6无常规系统日志message日志
+ d( A4 ~* [- {5 n7 }! m! Broot@controller:~# cd /var/log/
3 Q2 [. T6 j; y" {- lroot@controller:/var/log# ls
* n7 h- r9 e G1 @' ~alternatives.log boot.log chrony dmesg.0 dmesg.3.gz faillog kern.log syslog unattended-upgrades3 e5 x( y- _3 z3 P* g. e
apt bootstrap.log dist-upgrade dmesg.1.gz dmesg.4.gz fsck landscape ubuntu-advantage.log upstart! ?1 k9 E5 {( o5 I4 C& R% V6 c
auth.log btmp dmesg dmesg.2.gz dpkg.log installer lastlog udev wtmp& s5 B3 {, r* i3 o3 U! }
6 [; L; D3 a$ X7 e, m5 v m默认没有系统日志,和centos系统还是有些区别。
1 Z. R- _' v+ k0 K# B/ a* P. E通过网页搜索,显示ubuntu系统默认不开启系统日志。 A9 N0 o C! l8 R0 h
因为在 /etc/rsyslog.d/50-default.conf 文件中,将其注释掉了: W& c s" ]' U+ h* G8 R# K5 h
cat /etc/rsyslog.d/50-default.conf : n i* C% ^: J# ]# t; V$ \5 f* n
# Default rules for rsyslog./ f. D$ w0 @+ c! R+ t, W& t/ d
#
% `5 N* I1 r' n+ R# For more information see rsyslog.conf(5) and /etc/rsyslog.conf4 I6 R/ h. \$ m x
#$ \8 Y! \3 p' Q+ F! w# ]% i! ?
# First some standard log files. Log by facility.. E2 l6 i( p/ J2 o; | L2 i% W
## e# k- C* Q% J! g. ]& ?3 }# d) T
auth,authpriv.* /var/log/auth.log
J: d3 s% M7 f5 C*.*;auth,authpriv.none -/var/log/syslog
/ b7 \2 S6 K/ V) @& l; n#cron.* /var/log/cron.log
' m, `# L& A% R/ Y- i3 L#daemon.* -/var/log/daemon.log4 a* t# ~: m2 K( n: i3 R% p" T2 O2 l9 G
kern.* -/var/log/kern.log
3 E K* ~: C- u2 g5 Y/ `#lpr.* -/var/log/lpr.log
3 u! O: U" L& j% {' O1 zmail.* -/var/log/mail.log
) h& b/ w: d g8 P7 f- M. y#user.* -/var/log/user.log! b8 z- N5 [& m" j. [
#. I6 }, A. x- B& Q$ h5 g: V! u
# Logging for the mail system. Split it up so that
1 G% |+ `4 `4 F. }! b, j2 t' H# it is easy to write scripts to parse these files." H# O. O1 Q2 j
#
, k% G- N) I3 G, y/ t6 @#mail.info -/var/log/mail.info
' \7 K) \9 c& p7 {3 ?#mail.warn -/var/log/mail.warn
" @5 K, H' `" }; T L% cmail.err /var/log/mail.err, P T! F& l4 s
#
" q9 J4 V+ ~* i/ b+ [4 E5 `# Logging for INN news system.
; o4 f' P" I# h7 p9 N#& z. b' b# K% J! z% |
news.crit /var/log/news/news.crit
7 z+ i Q9 l: qnews.err /var/log/news/news.err
) n2 m0 q4 O2 Q. R7 ?& y- U7 fnews.notice -/var/log/news/news.notice
0 e) L4 u/ j5 }+ z M#
0 Z5 x8 v( Q' r8 A' w# Some "catch-all" log files.* U8 h6 \% T B W
#
7 }8 u) ?) W1 F* r6 u4 e#*.=debug;\
4 O1 G- E0 i8 f: n# auth,authpriv.none;\7 e# k7 W- X4 b6 d+ {
# news.none;mail.none -/var/log/debug- _/ }" ]/ A5 ~
#*.=info;*.=notice;*.=warn;\
5 G+ m! S/ V( Z) C! D8 b# [" ^- d# auth,authpriv.none;\4 L# T; S5 C9 }
# cron,daemon.none;\3 t' q& E. M& g4 D0 f1 x0 Q& m
# mail,news.none -/var/log/messages. ` F% W- i; q; d) F
#( d9 T4 U* W8 i; a( a
# Emergencies are sent to everybody logged in. A7 V$ J! P4 ~; @0 K& D
#
4 x- ^" {5 x, p/ G( _7 z9 ?/ K*.emerg :omusrmsg:*' d7 g8 d$ _/ T6 m; \& I3 Q
#* ?3 A3 d6 j( W. M) z
# I like to have messages displayed on the console, but only on a virtual+ G" n4 }+ z3 f/ _
# console I usually leave idle.. Y7 D: a6 [% }6 C$ i* |
#
, M3 |) w* d0 O, Y E7 l#daemon,mail.*;\! ^3 ^6 Z. L: k
# news.=crit;news.=err;news.=notice;\
/ _/ Z# Y, z2 V/ B: H5 C# *.=debug;*.=info;\; i1 \, N' G2 y$ C8 K9 F r
# *.=notice;*.=warn /dev/tty8
V5 H) _5 Z1 g+ X# The named pipe /dev/xconsole is for the `xconsole' utility. To use it,
! r' z2 I6 C% Y- w5 W8 B# you must invoke `xconsole' with the `-file' option:& c; r- f5 X" `, u
# " Q8 K& B' ^# M3 d
# $ xconsole -file /dev/xconsole [...]
$ K+ V5 O# g' A* c: X#( g8 a8 Y( b9 }6 t9 M+ T% P+ U
# NOTE: adjust the list below, or you'll go crazy if you have a reasonably5 l3 Q0 _/ a8 a9 _# H6 X9 Y. G9 Y
# busy site.." _* J. W- Q+ U
#
, @3 @6 v, F/ p' `daemon.*;mail.*;\9 c1 I& w6 g$ E2 y
news.err;\
- ~9 S% W0 x- ]! W- Y# U *.=debug;*.=info;\
' r& `3 E$ v* g& U1 @ *.=notice;*.=warn |/dev/xconsole6 I0 ]# t1 c0 J' e
解决办法:
' ]+ S& Q- O/ C9 T所以需修改该配置文件,将注释放开。
# }3 K9 r0 t. ^! }9 Zroot@controller:/var/log# vim /etc/rsyslog.d/50-default.conf - C# _6 L2 g8 k1 p" v" |
?3 P' G7 A! Q. z8 I
# Some "catch-all" log files.
+ {" r$ L5 P3 v: E" {9 T9 m; c#
/ e& y# ]$ ]3 e$ ?+ W*.=debug;\
9 b5 C, J' _& u* r9 I auth,authpriv.none;\% Y6 G0 M1 @, i# ~9 s
news.none;mail.none -/var/log/debug0 X* E, i; E& h6 N
*.=info;*.=notice;*.=warn;\) u7 q _5 t! W9 l- T4 W
auth,authpriv.none;\; m3 S; @# l7 I( T! u: c# w F0 Y
cron,daemon.none;\
- O" L) _, v2 F- P9 t mail,news.none -/var/log/messages
# }1 s, g, i0 c: H- V$ Q- a K
/ h# s- n1 g5 i: J; u' G) E然后重启rsyslog服务即可:
8 C W+ |! g# }+ E& A+ y
4 V9 t- G: H' u6 k7 l; Vroot@controller:/var/log# service rsyslog restart 7 [$ h4 l8 a; Y3 u
rsyslog stop/waiting' K# W, R" ?6 H/ ^0 _ j
rsyslog start/running, process 74907* ~9 ]1 g: M0 l* u, n1 M
' Q' r- o+ @' W" o; S0 \
3 R; C) z: T2 A$ l1 w再次查看,就有日志了:
2 n5 j5 C T& o4 A9 }$ croot@controller:/var/log# ls* o. x7 h. ~, J' G
alternatives.log boot.log chrony dmesg.0 dmesg.3.gz faillog kern.log messages udev wtmp
" q" H5 m6 X7 {apt bootstrap.log dist-upgrade dmesg.1.gz dmesg.4.gz fsck landscape syslog unattended-upgrades* k+ \1 q+ U3 l4 z* S) V6 ]
auth.log btmp dmesg dmesg.2.gz dpkg.log installer lastlog ubuntu-advantage.log upstart
: |7 k9 n# G q+ I) droot@controller:/var/log#
4 P: D% F8 Q6 [( p, _6 }( i- P5 E W& W' Q
, Q) g! z& } ~# a; D% o问题解决。
; P" L6 U8 s$ W0 o7 n9 |8 v! }+ z$ g. r0 f" Y# X7 p
|
|