That's quite true--Kiwi even has a specific MySQL format.
The only thing that Kiwi won't do is break down the individual parts of the Syslog message, as Bud appears to be planning, but this might just as well be done via SQL, IMO.
Either way, getting the file I/O due to logging off the mailbox server should be the primary concern. Sending the logs to a local file, then uploading them via ODBC, is not the way to build a scaleable solution.
I agree that using kiwi to send the log information directly to the database is the most scalable. It appears you need the $99 registered version to push data directly into the database, though. For this project, budget is more of a concern than scalability. Our iMail server handles 3 domains and approximately 200 users, 2500 msgs per day. I (or more accurately, upper management) are more interested in rapid answers to questions like "who do we get the most mail from" or "who sent mail to the customer service department", "now much mail did John Doe send send out on Aug 13th, and to whom?"
In order to make it easier to provide the answers, I am (as you noticed), breaking down each log entry into significant parts & fields.
Though I said scalability isn't a big concern, that doesn't mean I'm not paying attention to the number of CPU cycles used. When I'm done, I'll have something that meets my needs. I'll make it publicly available, because I'm pretty positive that someone else will have similar requirements.
-- ------------------------------------------------------------------- illigitimi non carborundum ------------------------------------------------------------------- Bud Durland, CNE Mold-Rite Plastics Network Administrator http://www.mrpcap.com -------------------------------------------------------------------
--- [This E-mail scanned for viruses by Declude Virus / Sophos AV]
To Unsubscribe: http://www.ipswitch.com/support/mailing-lists.html List Archive: http://www.mail-archive.com/imail_forum%40list.ipswitch.com/ Knowledge Base/FAQ: http://www.ipswitch.com/support/IMail/
