Rainer, thank you for your suggestions. Today I updated to version 7.4.2. I have produced a debug log. This time I simulated the network outage with iptables (with -j DROP), which is much faster than routing the destination IP to localhost. Here are the last lines oft he tcpdump output, after removing the iptables rule, no reconnect does happen until I restart rsyslogd.
09:27:00.503102 IP mssql-host.ms-sql-s > rsyslog-host.42647: Flags [.], seq 4767:4768, ack 15100, win 256, length 1 09:27:00.924122 IP mssql-host.ms-sql-s > rsyslog-host.42645: Flags [.], seq 1492:1493, ack 2372, win 257, length 1 09:27:01.035147 IP mssql-host.ms-sql-s > rsyslog-host.42646: Flags [.], seq 1254:1255, ack 1218, win 255, length 1 09:27:01.503238 IP mssql-host.ms-sql-s > rsyslog-host.42647: Flags [.], seq 4767:4768, ack 15100, win 256, length 1 09:27:01.924073 IP mssql-host.ms-sql-s > rsyslog-host.42645: Flags [R.], seq 1493, ack 2372, win 0, length 0 09:27:02.035207 IP mssql-host.ms-sql-s > rsyslog-host.42646: Flags [R.], seq 1255, ack 1218, win 0, length 0 09:27:02.503354 IP mssql-host.ms-sql-s > rsyslog-host.42647: Flags [.], seq 4767:4768, ack 15100, win 256, length 1 09:27:03.503301 IP mssql-host.ms-sql-s > rsyslog-host.42647: Flags [.], seq 4767:4768, ack 15100, win 256, length 1 09:27:04.503294 IP mssql-host.ms-sql-s > rsyslog-host.42647: Flags [R.], seq 4768, ack 15100, win 0, length 0 Unfortunately, I cannot make the whole debug file to the public, because there are customer mail logs in it. I'm not sure how to remove the msg part of the log lines without destroying the debug content. The zipped file is about 360k big, can I send it to you directly? Another thing, I want to report. Sometimes when stopping rsyslog (via init script *and* in debugging mode with ^C), rsyslogd crashes. Here the backtrace: http://pastebin.com/FdRU7SRM Regards, Martin > -----Ursprüngliche Nachricht----- > Von: [email protected] [mailto:rsyslog- > [email protected]] Im Auftrag von Rainer Gerhards > Gesendet: Donnerstag, 04. Juli 2013 18:59 > An: rsyslog-users > Betreff: Re: [rsyslog] reconnection to database server problem > > On Thu, Jul 4, 2013 at 6:56 PM, Schmidauer Martin > <[email protected]>wrote: > > > The connection was broken for about 5 minutes, I waited 10 to 15 minutes. > > > > > That should be sufficient. I think we may be at 2 to 4 minutes wait time at most. > > Can you reproduce the situation while you run a a debug log? Please post the > debug log (e.g. via pastebin). > > Instructions: > http://www.rsyslog.com/doc/troubleshoot.html > > Rainer > > > > > > > > -----Ursprüngliche Nachricht----- > > > Von: [email protected] [mailto:rsyslog- > > > [email protected]] Im Auftrag von Rainer Gerhards > > > Gesendet: Donnerstag, 04. Juli 2013 18:53 > > > An: rsyslog-users > > > Betreff: Re: [rsyslog] reconnection to database server problem > > > > > > how long did you wait for the reconnect to happen? If an action > > > fails, > > rsyslog > > > does retries on a kind of logarithmic scale (the longer the action > > > fails, > > the less > > > frequently it is retried). > > > > > > Rainer > > > > > > > > > On Thu, Jul 4, 2013 at 6:32 PM, Schmidauer Martin > > > <[email protected]>wrote: > > > > > > > Hello, > > > > > > > > I am using rsyslog to log into a MSSQL DB with omlibdbi and freetds. > > > > I wanted to test the reliability and removed the network > > > > connection to the DB server (with a host route to localhost) on the rsyslog > server. > > > > After a while all connections to the DB server terminate. After > > > > removing the host route, the rsyslog daemon never tries to > > > > reconnect until I restart the rsyslogd itself. Am I missing an option? > > > > > > > > Regards, Martin > > > > > > > > > > > > > > > > _______________________________________________ > > > > rsyslog mailing list > > > > http://lists.adiscon.net/mailman/listinfo/rsyslog > > > > http://www.rsyslog.com/professional-services/ > > > > What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE > > > > WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a > > > > myriad of sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT > > > > POST if you DON'T LIKE THAT. > > > > > > > _______________________________________________ > > > rsyslog mailing list > > > http://lists.adiscon.net/mailman/listinfo/rsyslog > > > http://www.rsyslog.com/professional-services/ > > > What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE WELL: > > This > > > is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites > > > beyond > > our > > > control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT. > > > > _______________________________________________ > > rsyslog mailing list > > http://lists.adiscon.net/mailman/listinfo/rsyslog > > http://www.rsyslog.com/professional-services/ > > What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE > > WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of > > sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you > > DON'T LIKE THAT. > > > _______________________________________________ > rsyslog mailing list > http://lists.adiscon.net/mailman/listinfo/rsyslog > http://www.rsyslog.com/professional-services/ > What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE WELL: This > is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites beyond our > control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT.
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com/professional-services/ What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT.

