= rsyslogd (paso 1)
== /etc/rsyslogd
para permitir conexiones remotas a nuestro sistema de log, descomentar:
# provides UDP syslog reception
$ModLoad imudp
$UDPServerRun 514
# provides TCP syslog reception
$ModLoad imtcp
$InputTCPServerRun 514
== /var/log
crear el fichero de log a usar:# touch /var/log/.log
== configurar rsyslog
$template NetworkLog, "/var/log/fichero.log"
:fromhost-ip, isequal, "192.168.1.1" -?NetworkLog
& stop
== reiniciar servicio
# service rsyslog restart
== activar logrotate
/var/log/fichero.log {
rotate 7
size 500k
notifempty
compress
postrotate
invoke-rc.d rsyslog rotate > /dev/null
endscript
}
o aƱadir a ''/etc/logrotate.d/rsyslogd''