blob: cb807420e5a85937cf3722df011a58d51543200e (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
|
[system]
state_dir = /var/run/pylogsentinel
max_block_size = 10M
[logs.standard]
cmd = find / -type f -path '*/var/log/*' ! -name '*access.log' ! -name '*.bz2' ! -name 'dmesg*' ! -name 'syncthing*'
[logs.access]
paths = /usr/local/jails/containers/ingress/var/log/nginx/access.log
[action.default]
cmd = echo -e "---------\nMatched $RULE_ID in $FILE at line $LINE, context:\n\n$CONTEXT\n" >> /tmp/pylogsentinel.daily
[rule.error]
description = Error-like conditions
pattern = /(error|fatal|exception|killed)/i
logs = standard
[rule.access]
description = HTTP code >=500 in access log
pattern = /HTTP\/[0-9].[0-9]" 5[0-9][0-9]/
logs = access
|