On Wed, 27 Feb 2013, C. L. Martinez wrote:

Possibly you are right David. But the solution proposed by Sean is
what I'm looking for days. With SEC, I don't see how can I accomplish
this.

I need to correlate an antispam/antivirus appliance. For every email
that comes to this appliance, sometimes can generate three log
entries, or 20, or 10, or ... I don't see how SEC can correlate this.
With Sean sample is really possible. Another thing is performance ...

Any sample about how to do this with SEC??
_______________________________________________

I can probably come up with a sample, but I don't understand what you are trying to do well enough, could you please re-state what you are trying to do?

FYI, in SEC you can use snippets of perl in both the pattern matching stage and in the action stage, that lets you do just about anything you want while still taking advantage of the features that SEC provides.

David Lang
_______________________________________________
rsyslog mailing list
http://lists.adiscon.net/mailman/listinfo/rsyslog
http://www.rsyslog.com/professional-services/
What's up with rsyslog? Follow https://twitter.com/rgerhards
NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of 
sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE 
THAT.

Reply via email to