Hello, Any help on this would be greatly appreciated .. I have a .conf file for creating the remote logs to separate files ..
#This will allow this server to log the remotely forwarded logs$FileCreateMode 0664$fileOwner netman$FileGroup cscworks$dirOwner netman#$template FilenameTemplateOne,"/opt/apps/syslog/%HOSTNAME%.log"if $fromhost-ip startswith '192.x.' then -?FilenameTemplateOne#$template FilenameTemplateOne,"/opt/apps/syslog/%HOSTNAME%.log"if $fromhost-ip startswith 'x.x.x..' then -?FilenameTemplateOne#if $fromhost-ip == '10.x.x.1' then /opt/apps/syslog/Firewall1-admin.logif $fromhost-ip == '10.x.x.x' then /opt/apps/syslog/firewall-core.logif $fromhost-ip == '10.x.x.x' then /opt/apps/syslog/switch1.logif $fromhost-ip == '10.x.x.x' then /opt/apps/syslog/switch2-admin.log there are few more similar entries from all the Ip's I wanted to create the logs .. the problem is if I use the &~ at the end of the line .. its doesn't stop sending the logs to /var/log/messages .. but if I use the "stop" at the end of the file .. its stops sending messages to /var/log/messages completely . &~ used to work on previous version of syslog ..but its not working on the rsyslogd 8.24.0 (RHEL 7.0) Thanks in advance Haary. _______________________________________________ rsyslog mailing list http://lists.adiscon.net/mailman/listinfo/rsyslog http://www.rsyslog.com/professional-services/ What's up with rsyslog? Follow https://twitter.com/rgerhards NOTE WELL: This is a PUBLIC mailing list, posts are ARCHIVED by a myriad of sites beyond our control. PLEASE UNSUBSCRIBE and DO NOT POST if you DON'T LIKE THAT.

