Mike Vanecek <mailto:[EMAIL PROTECTED]> wrote:
> Multiple facilities are available via syslog: > > The facility is one of the following keywords: auth, authpriv, > cron, daemon, kern, lpr, mail, mark, news, security (same as > auth), syslog, user, uucp and local0 through local7. The > keyword security should not be used anymore and mark is only > for internal use and therefore should not be used in > applications. Anyway, you may want to specify and redi- rect > these messages here. The facility specifies the subsystem > that produced the message, i.e. all mail programs log with the > mail facility (LOG_MAIL) if they log using syslog. > > If the device you are sending from can be told to use one of the > localn facilities, then you can easily control that with a localn.* > entry in syslog.conf. Ok, I see what you're saying. Well I guess the next step then is to see what facility the firewall is sending it's entries on. Thanks for your time Mike. Chris. -- redhat-list mailing list unsubscribe mailto:[EMAIL PROTECTED] https://www.redhat.com/mailman/listinfo/redhat-list