Skip to content

Instantly share code, notes, and snippets.

@bshuler
Forked from hobbes3/splunk.conf
Created September 8, 2017 13:02
Show Gist options
  • Save bshuler/cdbf6ab386df347b6376cadd5b94b53c to your computer and use it in GitHub Desktop.
Save bshuler/cdbf6ab386df347b6376cadd5b94b53c to your computer and use it in GitHub Desktop.
syslog-ng syslog conf splunk
options {
create-dirs(yes);
owner("splunk");
group("splunk");
dir-owner("splunk");
dir-group("splunk");
dir-perm(0755);
perm(0644);
time-reopen(10);
keep-hostname(yes);
log-msg-size(65536);
};
source s_default {
udp(ip("0.0.0.0") port(514));
tcp(ip("0.0.0.0") port(514));
};
destination d_default {
file("/var/log/syslog-ng/$HOST/$YEAR-$MONTH-$DAY.log");
};
log {
source(s_default);
destination(d_default);
};
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment