That is my version on Debian Lenny 5.0.6: # rsyslogd -v rsyslogd 3.18.6, compiled with: FEATURE_REGEXP: Yes FEATURE_LARGEFILE: Yes FEATURE_NETZIP (message compression): Yes GSSAPI Kerberos 5 support: No FEATURE_DEBUG (debug build, slow code): No Runtime Instrumentation (slow code): No
I tried your template and it works. Thanks a lot Rainer! On Sun, Nov 14, 2010 at 5:05 AM, Rainer Gerhards <[email protected]>wrote: > Maybe your rsyslog version is too old, this canned template is not > available > in old versions. But then you should have seen an error message on startup > (provided you do not throw them away, what unfortunately many distros do by > default...). > > If that's the problem, you can use this template (I have NOT checked it is > 100% accurate!): > > $template debug,"Debug line with all properties:\nFROMHOST: '%FROMHOST%', > fromhost-ip: '%fromhost-ip%', HOSTNAME: '%HOSTNAME%', PRI: > %PRI%,\nsyslogtag > '%syslogtag%', programname: '%programname%', APP-NAME: '%APP-NAME%', > PROCID: > '%PROCID%', MSGID: '%MSGID%',\nTIMESTAMP: '%TIMESTAMP%', STRUCTURED-DATA: > '%STRUCTURED-DATA%',\nmsg: '%msg%'\nescaped msg: '%msg:::drop-cc%'\nrawmsg: > '%rawmsg%'\n\n" > > Rainer > > > -----Original Message----- > > From: [email protected] [mailto:rsyslog- > > [email protected]] On Behalf Of Bernard Fay > > Sent: Sunday, November 14, 2010 2:47 AM > > To: rsyslog-users > > Subject: [rsyslog] Empty log RSYSLOG_DebugFormat > > > > Hi > > > > I added this to my config file : *.* > > /var/log/rsyslog_debug.log;RSYSLOG_DebugFormat > > > > When I start rsyslogd, the log file /var/log/rsyslog_debug.log is > > created > > but empty. I checked with lsof and there is not open file under this > > name. > > > > Any idea about what could be the problem? > > > > Thanks, > > Bernard > > > > > > beryllium:/var/log# ls -ltr > > -rw-r--r-- 1 root root 608492 2010-11-13 20:36 atop.log > > -rw-r----- 1 root adm 0 2010-11-13 20:39 *rsyslog_debug.log* > > -rw-r----- 1 root adm 25977 2010-11-13 20:39 messages > > -rw-r----- 1 root adm 1620 2010-11-13 20:39 kern.log > > -rw-r----- 1 root adm 45538 2010-11-13 20:45 syslog > > -rw-r----- 1 root adm 475829 2010-11-13 20:45 auth.log > > > > > > # lsof | grep rsyslog | fgrep /var/log > > rsyslogd 21679 root 5w REG 8,6 475634 28086 > > /var/log/auth.log > > rsyslogd 21679 root 6w REG 8,6 45378 27872 > > /var/log/syslog > > rsyslogd 21679 root 7w REG 8,6 14879 28084 > > /var/log/daemon.log > > rsyslogd 21679 root 8w REG 8,6 1620 28085 > > /var/log/kern.log > > rsyslogd 21679 root 9w REG 8,6 0 27875 > > /var/log/lpr.log > > rsyslogd 21679 root 10w REG 8,6 14420 27876 > > /var/log/mail.log > > rsyslogd 21679 root 11w REG 8,6 21839 28087 > > /var/log/user.log > > rsyslogd 21679 root 12w REG 8,6 14420 27878 > > /var/log/mail.info > > rsyslogd 21679 root 13w REG 8,6 2372 27879 > > /var/log/mail.warn > > rsyslogd 21679 root 14w REG 8,6 0 28188 > > /var/log/mail.err > > rsyslogd 21679 root 15w REG 8,6 0 27882 > > /var/log/news/news.crit > > rsyslogd 21679 root 16w REG 8,6 0 27883 > > /var/log/news/news.err > > rsyslogd 21679 root 17w REG 8,6 0 27884 > > /var/log/news/news.notice > > rsyslogd 21679 root 18w REG 8,6 108 27885 > > /var/log/debug > > rsyslogd 21679 root 19w REG 8,6 25977 28089 > > /var/log/messages > > _______________________________________________ > > rsyslog mailing list > > http://lists.adiscon.net/mailman/listinfo/rsyslog > > http://www.rsyslog.com > _______________________________________________ > rsyslog mailing list > http://lists.adiscon.net/mailman/listinfo/rsyslog > http://www.rsyslog.com > _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com

