Maybe your rsyslog version is too old, this canned template is not available in old versions. But then you should have seen an error message on startup (provided you do not throw them away, what unfortunately many distros do by default...).
If that's the problem, you can use this template (I have NOT checked it is 100% accurate!): $template debug,"Debug line with all properties:\nFROMHOST: '%FROMHOST%', fromhost-ip: '%fromhost-ip%', HOSTNAME: '%HOSTNAME%', PRI: %PRI%,\nsyslogtag '%syslogtag%', programname: '%programname%', APP-NAME: '%APP-NAME%', PROCID: '%PROCID%', MSGID: '%MSGID%',\nTIMESTAMP: '%TIMESTAMP%', STRUCTURED-DATA: '%STRUCTURED-DATA%',\nmsg: '%msg%'\nescaped msg: '%msg:::drop-cc%'\nrawmsg: '%rawmsg%'\n\n" Rainer > -----Original Message----- > From: [email protected] [mailto:rsyslog- > [email protected]] On Behalf Of Bernard Fay > Sent: Sunday, November 14, 2010 2:47 AM > To: rsyslog-users > Subject: [rsyslog] Empty log RSYSLOG_DebugFormat > > Hi > > I added this to my config file : *.* > /var/log/rsyslog_debug.log;RSYSLOG_DebugFormat > > When I start rsyslogd, the log file /var/log/rsyslog_debug.log is > created > but empty. I checked with lsof and there is not open file under this > name. > > Any idea about what could be the problem? > > Thanks, > Bernard > > > beryllium:/var/log# ls -ltr > -rw-r--r-- 1 root root 608492 2010-11-13 20:36 atop.log > -rw-r----- 1 root adm 0 2010-11-13 20:39 *rsyslog_debug.log* > -rw-r----- 1 root adm 25977 2010-11-13 20:39 messages > -rw-r----- 1 root adm 1620 2010-11-13 20:39 kern.log > -rw-r----- 1 root adm 45538 2010-11-13 20:45 syslog > -rw-r----- 1 root adm 475829 2010-11-13 20:45 auth.log > > > # lsof | grep rsyslog | fgrep /var/log > rsyslogd 21679 root 5w REG 8,6 475634 28086 > /var/log/auth.log > rsyslogd 21679 root 6w REG 8,6 45378 27872 > /var/log/syslog > rsyslogd 21679 root 7w REG 8,6 14879 28084 > /var/log/daemon.log > rsyslogd 21679 root 8w REG 8,6 1620 28085 > /var/log/kern.log > rsyslogd 21679 root 9w REG 8,6 0 27875 > /var/log/lpr.log > rsyslogd 21679 root 10w REG 8,6 14420 27876 > /var/log/mail.log > rsyslogd 21679 root 11w REG 8,6 21839 28087 > /var/log/user.log > rsyslogd 21679 root 12w REG 8,6 14420 27878 > /var/log/mail.info > rsyslogd 21679 root 13w REG 8,6 2372 27879 > /var/log/mail.warn > rsyslogd 21679 root 14w REG 8,6 0 28188 > /var/log/mail.err > rsyslogd 21679 root 15w REG 8,6 0 27882 > /var/log/news/news.crit > rsyslogd 21679 root 16w REG 8,6 0 27883 > /var/log/news/news.err > rsyslogd 21679 root 17w REG 8,6 0 27884 > /var/log/news/news.notice > rsyslogd 21679 root 18w REG 8,6 108 27885 > /var/log/debug > rsyslogd 21679 root 19w REG 8,6 25977 28089 > /var/log/messages > _______________________________________________ > rsyslog mailing list > http://lists.adiscon.net/mailman/listinfo/rsyslog > http://www.rsyslog.com _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com

