Subversion Repositories ALCASAR

Rev

Rev 1452 | Blame | Compare with Previous | Last modification | View Log | RSS feed

# Example of a simple configuration for ulogd with ALCASAR

[global]

######################################################################
# GLOBAL OPTIONS
######################################################################

user="ulogd"
group="ulogd"

# logfile for status messages
logfile="/var/log/ulogd/ulogd.log"

# loglevel: debug(1), info(3), notice(5), error(7) or fatal(8) (default 5)
#loglevel=8


######################################################################
# PLUGIN OPTIONS
######################################################################

# We have to configure and load only the plugins we want to use

# general rules:
# 1. load the plugins _first_ from the global section
# 2. options for each plugin in seperate section below

plugin="/usr/lib64/ulogd/ulogd_inppkt_NFLOG.so"
plugin="/usr/lib64/ulogd/ulogd_filter_IFINDEX.so"
plugin="/usr/lib64/ulogd/ulogd_filter_IP2STR.so"
plugin="/usr/lib64/ulogd/ulogd_filter_PRINTPKT.so"
plugin="/usr/lib64/ulogd/ulogd_filter_PRINTFLOW.so"
plugin="/usr/lib64/ulogd/ulogd_output_LOGEMU.so"
plugin="/usr/lib64/ulogd/ulogd_raw2packet_BASE.so"

# this is a stack for ULOG packet-based logging via LOGEMU
stack=log1:NFLOG,base1:BASE,ifil:IFINDEX,ip2str1:IP2STR,print1:PRINTPKT,emu1:LOGEMU

[log1]
group=CHANGEVALUE