文档介绍:linuxforcisco日志服务器搭建(Linux的思科日志服务器搭建)Purpose:::.,thetestprocedureisdividedintotwomajorblocks1)exchangeFirst,setuptheswitchestosendlogsOpen:(config)^loggingon(openlog)(config)#loggingfacilitylocal4(local4andLINUXtothedevicenumber,thecorresponding)(config)^(config)^mandchangesthedevicenumberandShowlogging2)(thisisthefilethatsetstheCiscosenttothatfile)[******@localhostlog]#VI/etc/#console・Loggingmuchelsecluttersupthe#screen.#kern.*/dev/consoleLoganything(exceptmail)oflevelinfoorhigher・Don,tlogprivateauthenticationmessages!*・info;:;・#Authpriv.*/var/log/secureLogallthemailmessagesin#oneplace・Mai1・*-/var/log/maiIlogLogcronstuffCron.*/var/log/cronEverybodygetsemergencymessages#*・emerg*Newserrorsoflevel#Savecritandhigherinaspecialfile・Uucp,,/var/log/spoolerSavebootmessagesalsotoboot・log#Local7・*/var/log/.*/var/log/(*standsforallmessages)(here,local4iscorrespondingtothelocal4oftheCiscosetting,anditputsthelogsfromtheCiscotovar/log/)Youcanusemansyslogtohave8messagelevels#defineKERN_EMERG systemisunusable/**/#defineKERN_ALERT〃〈1〉〃actionmustbetakenimmediately*//*#defineKERNCRIT〃〈2>criticalconditions"/**/#defineKERN_ERR"〈3〉