Hello Michael,
On Sat, Sep 01, 2018 at 03:05:14PM +0200, Michael Biebl wrote:
> On 9/1/18 14:49, Helge Kreutzmann wrote:
> > Package: rsyslog
> > Version: 8.37.0-2
> > Severity: normal
> >
> > The pattern for rsyslog are displayed. Reason is that
> > ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ rsyslogd: \[origin software="rsyslogd"
> > swVersion="[0-9.]+" x-pid="[0-9]+" x-info="http://www.rsyslog.com"\] start$
> > ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ rsyslogd: \[origin software="rsyslogd"
> > swVersion="[0-9.]+" x-pid="[0-9]+" x-info="http://www.rsyslog.com"\]
> > exiting on signal [0-9]+.$
> > ^\w{3} [ :0-9]{11} [._[:alnum:]-]+ rsyslogd: \[origin software="rsyslogd"
> > swVersion="[0-9.]+" x-pid="[0-9]+" x-info="http://www.rsyslog.com"\]
> > rsyslogd was HUPed$
> >
> > is missing a space (there are two spaces) after rsyslogd:
>
> This most have been broken for a really long time and apparently went
> unnoticed, which makes me wonder if I shouldn't just dropped the
> logcheck rules from the rsyslog package. I'm not using logcheck myself,
> so I feel uncomfortable shipping stuff that no-one really cares about.
Yes, it is broken for quite some time, so far I only fixed it locally
but I finally decided to report it. So it is my fault for not
reporting this earlier (I thought it was so minor, sorry).
So, if possible, keep the logcheck rules, it is really appreciated.
And they do not harm people not using logcheck.
Thanks.
Greetings
Helge
--
Dr. Helge Kreutzmann [email protected]
Dipl.-Phys. http://www.helgefjell.de/debian.php
64bit GNU powered gpg signed mail preferred
Help keep free software "libre": http://www.ffii.de/
signature.asc
Description: Digital signature

