<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Kadamsoo</id>
	<title>ICO wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Kadamsoo"/>
	<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php/Special:Contributions/Kadamsoo"/>
	<updated>2026-05-08T08:24:38Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.45.1</generator>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99352</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99352"/>
		<updated>2015-12-18T19:01:56Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm] [http://linux.die.net/man/3/syslog]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed koos kirjelduse ja selgitusega&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed, aga neile peaks aeg-ajalt tähelepanu pöörama.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*&#039;&#039;&#039;1.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;2.&#039;&#039;&#039; http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*&#039;&#039;&#039;3.&#039;&#039;&#039; http://linux.die.net/man/8/syslogd&lt;br /&gt;
*&#039;&#039;&#039;4.&#039;&#039;&#039; https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*&#039;&#039;&#039;5.&#039;&#039;&#039; http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*&#039;&#039;&#039;6.&#039;&#039;&#039; https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*&#039;&#039;&#039;7.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;8.&#039;&#039;&#039; https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*&#039;&#039;&#039;9.&#039;&#039;&#039; http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*&#039;&#039;&#039;10.&#039;&#039;&#039; http://linux.die.net/man/3/syslog&lt;br /&gt;
*&#039;&#039;&#039;11.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;12.&#039;&#039;&#039; https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*&#039;&#039;&#039;13.&#039;&#039;&#039; http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm&lt;br /&gt;
*&#039;&#039;&#039;14.&#039;&#039;&#039; http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99351</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99351"/>
		<updated>2015-12-18T18:59:13Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kasutatud materjalid */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm] [http://linux.die.net/man/3/syslog]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed, aga neile peaks aeg-ajalt tähelepanu pöörama.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*&#039;&#039;&#039;1.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;2.&#039;&#039;&#039; http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*&#039;&#039;&#039;3.&#039;&#039;&#039; http://linux.die.net/man/8/syslogd&lt;br /&gt;
*&#039;&#039;&#039;4.&#039;&#039;&#039; https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*&#039;&#039;&#039;5.&#039;&#039;&#039; http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*&#039;&#039;&#039;6.&#039;&#039;&#039; https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*&#039;&#039;&#039;7.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;8.&#039;&#039;&#039; https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*&#039;&#039;&#039;9.&#039;&#039;&#039; http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*&#039;&#039;&#039;10.&#039;&#039;&#039; http://linux.die.net/man/3/syslog&lt;br /&gt;
*&#039;&#039;&#039;11.&#039;&#039;&#039; http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*&#039;&#039;&#039;12.&#039;&#039;&#039; https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*&#039;&#039;&#039;13.&#039;&#039;&#039; http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm&lt;br /&gt;
*&#039;&#039;&#039;14.&#039;&#039;&#039; http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99350</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99350"/>
		<updated>2015-12-18T18:58:02Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kasutatud materjalid */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm] [http://linux.die.net/man/3/syslog]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed, aga neile peaks aeg-ajalt tähelepanu pöörama.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*1. http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*2. http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*3. http://linux.die.net/man/8/syslogd&lt;br /&gt;
*4. https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*5. http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*6. https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*7. http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*8. https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*9. http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*10. http://linux.die.net/man/3/syslog&lt;br /&gt;
*11. http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*12. https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*13. http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm&lt;br /&gt;
*14. http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99349</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99349"/>
		<updated>2015-12-18T18:53:10Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm] [http://linux.die.net/man/3/syslog]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed, aga neile peaks aeg-ajalt tähelepanu pöörama.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99273</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99273"/>
		<updated>2015-12-18T11:47:37Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed, aga neile peaks aeg-ajalt tähelepanu pöörama.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99269</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99269"/>
		<updated>2015-12-18T11:38:31Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2 - probleemide raskusastmed&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99268</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99268"/>
		<updated>2015-12-18T11:37:30Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1 - teadete kirjeldus koos koodiga&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99267</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99267"/>
		<updated>2015-12-18T11:35:01Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kokkuvõte */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võeti kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisati ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisa märkusena siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99263</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99263"/>
		<updated>2015-12-18T11:31:38Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp;&amp;amp;nbsp;&amp;amp;nbsp;     Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;&amp;amp;nbsp; &amp;amp;nbsp; Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99262</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99262"/>
		<updated>2015-12-18T11:29:36Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039; &amp;amp;nbsp; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;         &amp;amp;nbsp;        Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;   &amp;amp;nbsp;  Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99261</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99261"/>
		<updated>2015-12-18T11:28:44Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*&#039;&#039;/etc/syslog.conf&#039;&#039;	&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt; Konfiguratsioonifail&lt;br /&gt;
*&#039;&#039;/dev/log&#039;&#039;                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*&#039;&#039;/var/run/syslogd.pid&#039;&#039;     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99257</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=99257"/>
		<updated>2015-12-18T11:25:37Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Sissejuhatus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnevas artiklis seletatakse lahti syslog mõiste, saadakse teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uuritakse, mida sisaldab endas üks syslog&#039;i teade ja tehakse kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98311</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98311"/>
		<updated>2015-12-03T12:13:07Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98310</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98310"/>
		<updated>2015-12-03T12:12:21Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/console.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98252</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98252"/>
		<updated>2015-12-01T13:02:51Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98251</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98251"/>
		<updated>2015-12-01T13:02:30Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98250</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98250"/>
		<updated>2015-12-01T13:01:59Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98249</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98249"/>
		<updated>2015-12-01T13:01:37Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98248</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98248"/>
		<updated>2015-12-01T13:00:56Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Facility&#039;&#039;&#039;&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98247</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98247"/>
		<updated>2015-12-01T12:59:08Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kasutatud materjalid */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8&lt;br /&gt;
*http://linux.die.net/man/8/syslogd&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98246</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98246"/>
		<updated>2015-12-01T12:58:07Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98245</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98245"/>
		<updated>2015-12-01T12:57:39Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98244</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98244"/>
		<updated>2015-12-01T12:57:18Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
&amp;lt;br&amp;gt;&lt;br /&gt;
Täpsem info järgnevatest allikatest:&lt;br /&gt;
[http://linux.die.net/man/8/syslogd]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?query=syslogd&amp;amp;sektion=8]&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98243</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98243"/>
		<updated>2015-12-01T12:55:23Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039; &amp;amp;nbsp; viib programmi, kus saab vigu parandada&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039; &amp;amp;nbsp; saadab teated edasi &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; nime või IP aadressi nimekiri &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039; &amp;amp;nbsp; tühistab DNS päringu &amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;amp;nbsp; võimaldab saada teateid läbi võrgu&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;amp;nbsp; paljusõnaline logimine&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;amp;nbsp; prindi ja lahku&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;amp;nbsp; Väldib ummikuid, kui nimeserver käib sama serveri peal, kus töötab syslog programm&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98240</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98240"/>
		<updated>2015-12-01T12:44:06Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem &#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98239</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98239"/>
		<updated>2015-12-01T12:43:43Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;rea printimise allsüsteem&#039;&#039;(line printer subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98238</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98238"/>
		<updated>2015-12-01T12:39:42Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  &amp;amp;nbsp; konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039; &amp;amp;nbsp; hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039; &amp;amp;nbsp; ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039; &amp;amp;nbsp; pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039; &amp;amp;nbsp; domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98236</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98236"/>
		<updated>2015-12-01T12:39:19Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;amp;nbsp; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039;  hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039;  ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039;  pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039;  domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98235</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98235"/>
		<updated>2015-12-01T12:38:05Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;lt;pre&amp;gt; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039;  hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039;  ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039;  pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039;  domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98234</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98234"/>
		<updated>2015-12-01T12:37:22Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039; &amp;lt;br&amp;gt;&amp;lt;br&amp;gt; pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039;  hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039;  ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;		&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039;  pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039;  domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98233</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98233"/>
		<updated>2015-12-01T12:34:16Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslogd */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-a&#039;&#039;&#039;   pesa  &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-d&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-f&#039;&#039;&#039;  konfiguratsioonifail &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-h&#039;&#039;&#039;  &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-l&#039;&#039;&#039;  hostlist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-m&#039;&#039;&#039;  ajavahemik&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-n&#039;&#039;&#039;&amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;[-P pid_file] &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-p&#039;&#039;&#039;  pesa&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-r&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-s&#039;&#039;&#039;  domeenilist &amp;lt;/p&amp;gt;	&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-S&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-v&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;-x&#039;&#039;&#039; &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98232</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98232"/>
		<updated>2015-12-01T12:23:40Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob syslog&#039;i teateid.&amp;lt;/p&amp;gt;&lt;br /&gt;
&#039;&#039;&#039;Ülevaade:&#039;&#039;&#039;&lt;br /&gt;
[-468ACcdkNnosTuv]	&lt;br /&gt;
[-a allowed_peer] &lt;br /&gt;
[-b bind_address]&lt;br /&gt;
[-f config_file] &lt;br /&gt;
[-l [mode:]path] &lt;br /&gt;
[-m mark_interval]&lt;br /&gt;
[-P pid_file] &lt;br /&gt;
[-p log_socket]&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;&#039;Failid:&#039;&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
*/etc/syslog.conf	  Konfiguratsioonifail&lt;br /&gt;
*/dev/log                 Unixi domeeni pesa, kust kohalikke syslog sõnumeid lugeda.&lt;br /&gt;
*/var/run/syslogd.pid     Fail sisaldab syslogd protsessi ID&#039;d.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98231</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98231"/>
		<updated>2015-12-01T12:12:02Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= syslogd =&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;Syslogd&#039;&#039;&#039;&#039;&#039; on programm, mis loob teateid.&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98168</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98168"/>
		<updated>2015-11-30T14:06:39Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kokkuvõte */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Käesolevas referaadis võtsin kokkuvõtvalt kokku syslog&#039;i mõiste, syslogi teadete sisu ja konfiguratsioonifaili sisu. Samuti lisasin ka mõned käsud, millega on võimalik vaadata syslog teateid. &amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;Materjali on antud teema puhul väga palju, millest lugejale lihtsat ja arusaadavat artiklit teha. Lisan siia juurde ka, et mõned väljendid on kaldkirjas ja inglise keelsed, kuna eesti keelde tõlgituna ei pruugiks neist nii aru saada nagu originaalkirjas. &amp;lt;/p&amp;gt; &lt;br /&gt;
&amp;lt;p&amp;gt;Üldjoontes võtab artikkel kokku kõige tähtsama, mida võiks syslog&#039;i kohta teada.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98167</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98167"/>
		<updated>2015-11-30T13:59:36Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Sissejuhatus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, millist informatsiooni endas sisaldab syslog&#039;i konfiguratsioonifail. Samuti uurin, mida sisaldab endas üks syslog&#039;i teade ja teen kindlaks, millisel juhul tuleb teatele kiiret tähelepanu pöörata ja millisel juhul mitte.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98165</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98165"/>
		<updated>2015-11-30T13:53:51Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Syslog faili sisu vaatamine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98164</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98164"/>
		<updated>2015-11-30T13:52:46Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;   [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98163</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98163"/>
		<updated>2015-11-30T13:51:49Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039; [http://www.kiwisyslog.com/help/syslog/index.html?protocol_levels.htm]&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98162</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98162"/>
		<updated>2015-11-30T13:50:09Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Probleemide raskusastmed (Severity) */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98161</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98161"/>
		<updated>2015-11-30T13:49:17Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98160</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98160"/>
		<updated>2015-11-30T13:48:28Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: &lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98159</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98159"/>
		<updated>2015-11-30T13:47:50Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Mis on syslog? */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&amp;lt;p&amp;gt;&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog] &amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98158</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98158"/>
		<updated>2015-11-30T13:47:00Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Mis on syslog? */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98157</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98157"/>
		<updated>2015-11-30T13:42:33Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud suure ja väikese tähe suhtes.&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Iga rea &#039;&#039;action&#039;&#039; väli täpsustab ära, millist tegevust tehakse, kui &#039;&#039;selector&#039;&#039; väli valib teate. On olemas 4 erinevat vormi:&lt;br /&gt;
&lt;br /&gt;
*Teekonna nimi (algab tõusva kaldjoonega).&lt;br /&gt;
*Nimi või IP aadress (eelneb ät (&amp;quot;@&amp;quot;) märk).&lt;br /&gt;
*/dev/konsool.&lt;br /&gt;
*Tärn.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98156</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98156"/>
		<updated>2015-11-30T13:14:43Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Kasutatud materjalid */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud (suur-väike täht).&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The action field of each line specifies the action to be taken when the selector field selects a message. There are four forms:&lt;br /&gt;
&lt;br /&gt;
A pathname (beginning with a leading slash).&lt;br /&gt;
Selected messages are appended to the specified file.&lt;br /&gt;
A hostname (preceded by an at (``@&#039;&#039;) sign).&lt;br /&gt;
Selected messages are forwarded to the syslogd daemon on the named host.&lt;br /&gt;
/dev/console.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
An asterisk.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98155</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98155"/>
		<updated>2015-11-30T13:14:04Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud (suur-väike täht).&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The action field of each line specifies the action to be taken when the selector field selects a message. There are four forms:&lt;br /&gt;
&lt;br /&gt;
A pathname (beginning with a leading slash).&lt;br /&gt;
Selected messages are appended to the specified file.&lt;br /&gt;
A hostname (preceded by an at (``@&#039;&#039;) sign).&lt;br /&gt;
Selected messages are forwarded to the syslogd daemon on the named host.&lt;br /&gt;
/dev/console.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
An asterisk.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1196979/html/man5/na_syslog.conf.5.html]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; kirjeldab seda osa süsteemist, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98154</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98154"/>
		<updated>2015-11-30T13:06:33Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (&amp;quot;.&amp;quot;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud (suur-väike täht).&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The action field of each line specifies the action to be taken when the selector field selects a message. There are four forms:&lt;br /&gt;
&lt;br /&gt;
A pathname (beginning with a leading slash).&lt;br /&gt;
Selected messages are appended to the specified file.&lt;br /&gt;
A hostname (preceded by an at (``@&#039;&#039;) sign).&lt;br /&gt;
Selected messages are forwarded to the syslogd daemon on the named host.&lt;br /&gt;
/dev/console.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
An asterisk.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; on väärtus, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98153</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98153"/>
		<updated>2015-11-30T13:04:50Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* /etc/syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (``.&#039;&#039;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud (suur-väike täht).&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The action field of each line specifies the action to be taken when the selector field selects a message. There are four forms:&lt;br /&gt;
&lt;br /&gt;
A pathname (beginning with a leading slash).&lt;br /&gt;
Selected messages are appended to the specified file.&lt;br /&gt;
A hostname (preceded by an at (``@&#039;&#039;) sign).&lt;br /&gt;
Selected messages are forwarded to the syslogd daemon on the named host.&lt;br /&gt;
/dev/console.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
An asterisk.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; on väärtus, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98152</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98152"/>
		<updated>2015-11-30T13:04:13Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* /etc/syslog.conf */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= /etc/syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;/etc/syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Selector&#039;&#039; väli on kodeeritud nagu süsteemi osa, mis loob teateid &#039;&#039;(facility - tabel1)&#039;&#039;, punkt (``.&#039;&#039;) ja tase &#039;&#039;(level)&#039;&#039; ilma tühikuteta. &#039;&#039;Facility&#039;&#039; ja &#039;&#039;level&#039;&#039; on mõlemad tõusutundetud (suur-väike täht).&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The action field of each line specifies the action to be taken when the selector field selects a message. There are four forms:&lt;br /&gt;
&lt;br /&gt;
A pathname (beginning with a leading slash).&lt;br /&gt;
Selected messages are appended to the specified file.&lt;br /&gt;
A hostname (preceded by an at (``@&#039;&#039;) sign).&lt;br /&gt;
Selected messages are forwarded to the syslogd daemon on the named host.&lt;br /&gt;
/dev/console.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
An asterisk.&lt;br /&gt;
Selected messages are written to the console.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; on väärtus, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98149</id>
		<title>Syslog</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Syslog&amp;diff=98149"/>
		<updated>2015-11-30T12:11:42Z</updated>

		<summary type="html">&lt;p&gt;Kadamsoo: /* Facility */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;= Autor =&lt;br /&gt;
&lt;br /&gt;
Kaari Zalite A31 2015/2016&lt;br /&gt;
&lt;br /&gt;
= Sissejuhatus =&lt;br /&gt;
&lt;br /&gt;
Järgnev artikkel seletab endas lahti syslog mõiste, saame teada, mida syslog endas sisaldab ja miks on see meile vajalik.&lt;br /&gt;
&lt;br /&gt;
= Mis on syslog? = &lt;br /&gt;
&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638][http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog]&lt;br /&gt;
[]&lt;br /&gt;
Syslog on utiliit, mille autoriks on Eric Allman. Syslog genereerib süsteemi logifailid ning saadab need läbi IP võrgu syslog serverisse &#039;&#039;&#039;&#039;&#039;/var/log/&#039;&#039;&#039;&#039;&#039; kasuta. Syslog&#039;i teateid saadavad välja erinevad võrguseadmed: ruuterid, switchid jms. &lt;br /&gt;
Syslog&#039;i paketi suurus on 1024 baiti ning see suurus on limiteeritud. &lt;br /&gt;
&amp;lt;p&amp;gt;Pakett sisaldab järgnevat informatsiooni:&amp;lt;/p&amp;gt;&lt;br /&gt;
*Kategooria &#039;&#039;(Facility)&#039;&#039;&lt;br /&gt;
*Raskusaste &#039;&#039;(Severity)&#039;&#039;&lt;br /&gt;
* Nimi või IP aadress &#039;&#039;(Hostname)&#039;&#039; &lt;br /&gt;
*Ajatempel &#039;&#039;(Timestamp)&#039;&#039;&lt;br /&gt;
*Teade &#039;&#039;(Message)&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
= /etc/syslog.conf = &lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;&#039;&#039;/etc/syslog.conf&#039;&#039;&#039;&#039;&#039; fail on syslogd programmi konfiguratsiooni fail. See sisaldab kahe väljaga ridu: [http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html]&lt;br /&gt;
[https://www.freebsd.org/cgi/man.cgi?syslog.conf]&lt;br /&gt;
&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Selector field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Teadete ja prioriteetide tüübid, mis rakendadakse igal real.&lt;br /&gt;
*&#039;&#039;&#039;&#039;&#039;Action field&#039;&#039;&#039;&#039;&#039;&lt;br /&gt;
Tegevus, mis tehakse, kui syslogd on saatnud teate ja see kattub valimi kriteeriumitega.&lt;br /&gt;
&#039;&#039;Selector field&#039;&#039; on eraldatud &#039;&#039;action field&#039;&#039; ühe või mitme märgi abil.&lt;br /&gt;
&lt;br /&gt;
The selectors are encoded as a facility, a dot (&amp;quot;.&amp;quot;), and a level, with no intervening whitespace. Both the facility and the level are case insensitive.&lt;br /&gt;
&lt;br /&gt;
= &#039;&#039;Facility&#039;&#039; =&lt;br /&gt;
 &lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Facility&#039;&#039; on väärtus, mis näitab ära milline protsess on teate loonud, näiteks kood number 5 on syslog, mis kirjeldab ära et teade on loodud syslogd poolt.&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
A facility code is used to specify the type of program that is logging the message. Messages with different facilities may be handled differently.[4] The list of facilities available[5] is defined by RFC 3164:&lt;br /&gt;
 &lt;br /&gt;
Syslog teated on üldjoontes kategoriseeritud neid loonud lähteandmete põhjal.&lt;br /&gt;
Need allikad on näiteks operatsioonisüsteem, protsess või programm.&lt;br /&gt;
Need kategooriad, &#039;&#039;ing. k facilities&#039;&#039;, on esindatud täisarvuna nagu on näidatud tabelis 1.&lt;br /&gt;
Kategooriad 16-21 &#039;&#039;(local use)&#039;&#039; ei ole reserveeritud ja on saadaval üldiseks kasutamiseks.&lt;br /&gt;
Seepärast protsessid ja programmid, millel ei ole eelnevalt ette määratud kategooriat, saavad valida mistahes kaheksa &#039;&#039;local use&#039;&#039; kategooria vahel. &lt;br /&gt;
Näiteks Cisco vahendid kasutavad ühte &#039;&#039;local use&#039;&#039; kategooriat teadete saatmiseks.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Facilities&#039;&#039; tabel: [http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
                                                                                                                    &amp;lt;p&amp;gt;&#039;&#039;tabel 1&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
 &lt;br /&gt;
&amp;lt;table class=&amp;quot;wikitable&amp;quot;&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kood&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Võtmesõna&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;th&amp;gt;Kirjeldus&amp;lt;/th&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kern&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kesksed teated &#039;&#039;(kernel messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;user&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kasutajapõhised teated &#039;&#039;(user-level messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mail&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;mailisüsteem &#039;&#039;(mail system)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;daemon&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;süsteemiprogrammid &#039;&#039;(system daemons)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;auth&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;syslog&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;teated genereeritakse syslogd poolt &#039;&#039;(messages generated internally by syslogd)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;lpr&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;line printer subsystem&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;news&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;võrguuudiste allsüsteem &#039;&#039;(network news subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;8&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;uucp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;UUCP allsüsteem &#039;&#039;(UUCP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;9&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kellaprogramm &#039;&#039;(clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;10&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;authpriv&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;kaitse/loa teated &#039;&#039;(security/authorization messages)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;11&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ftp&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;FTP programm &#039;&#039;(FTP daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;12&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;NTP allsüsteem &#039;&#039;(NTP subsystem)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;13&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;log&#039;i audit &#039;&#039;(log audit)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;14&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;-&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;logi hoiatus &#039;&#039;(log alert)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;15&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;cron&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;ajakava programm &#039;&#039;( clock daemon)&#039;&#039;&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;16&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local0&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 0 (local0)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;17&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local1&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 1 (local1)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;18&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local2&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 2 (local2)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;19&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local3&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 3 (local3)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;20&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local4&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 4 (local4)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;21&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local5&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 5 (local5)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;22&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local6&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 6 (local6)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;tr&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;23&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local7&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;td&amp;gt;local use 7 (local7)&amp;lt;/td&amp;gt;&lt;br /&gt;
&amp;lt;/tr&amp;gt;&lt;br /&gt;
&amp;lt;/table&amp;gt;&lt;br /&gt;
&lt;br /&gt;
= Probleemide raskusastmed &#039;&#039;(Severity)&#039;&#039; =&lt;br /&gt;
&lt;br /&gt;
[http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm]&lt;br /&gt;
[http://www.ciscopress.com/articles/article.asp?p=426638]&lt;br /&gt;
[https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html]&lt;br /&gt;
&amp;lt;p&amp;gt;Allikas või kategooria &#039;&#039;(facility)&#039;&#039;, mis genereerib syslog teate, samuti täpsustab teate raskusastme, kasutades ühekohalist täisarvu nagu on näidatud tabelis 2.&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&amp;lt;p&amp;gt;&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;p&amp;gt;&#039;&#039;Tabel 2&#039;&#039;&amp;lt;/p&amp;gt;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! Väärtus !! Raskusaste !! Võtmesõna  !! Kirjeldus !! Selgitus&lt;br /&gt;
|-&lt;br /&gt;
| 0 || Emergency || emerg || Süsteem on kasutuskõlbmatu || Paanika! Põhjuseks võib olla looduskatastroof.&lt;br /&gt;
|-&lt;br /&gt;
| 1 || Alert || alert || Tuleb koheselt korda teha || Tuleb koheselt korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 2 || Critical || crit || Kriitiline seisund || Tuleb koheselt reageerida. &amp;quot;Critical&amp;quot; tuleb korda teha enne &amp;quot;Alert&amp;quot; seisundit.&lt;br /&gt;
|-&lt;br /&gt;
| 3 || Error || err || Vea seisund || Tuleb üle anda arendajale või administraatorile ja kindla aja jooksul korda teha.&lt;br /&gt;
|-&lt;br /&gt;
| 4 || Warning || warning || Hoiatuse seisund || Ei ole veel viga, aga kui midagi ette ei võeta, siis võib viga tekkida.&lt;br /&gt;
|-&lt;br /&gt;
| 5 || Notice || notice || Normaalne, aga siiski tähtis seisund || Mitte tavapärased teated, peaks tähelepanu pöörama, aga mitte koheselt.&lt;br /&gt;
|-&lt;br /&gt;
| 6 || Informational || info ||  Informatsioonilised teated || Teated informatsiooniks, ei pea midagi tegema.&lt;br /&gt;
|-&lt;br /&gt;
| 7 || Debug || debug || debug-level teated || Kasulik info arendajale programmide parendamiseks.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
Teated 5 ja 6 on täiesti normaalsed.&lt;br /&gt;
&lt;br /&gt;
= Syslog faili sisu vaatamine =&lt;br /&gt;
&lt;br /&gt;
[http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/]&lt;br /&gt;
&amp;lt;p&amp;gt;Prindib välja syslog faili sisu&amp;lt;/p&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;cat /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:syslog.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab eraldi sõna otsida syslog faili seest:&lt;br /&gt;
&lt;br /&gt;
Näiteks otsime sõna &amp;quot;job&amp;quot;:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;grep job /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:grep.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Saab vaadata syslog faili sisu, aga muuta ei saa:&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;less /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kui syslog&#039;i fail on pikk, siis on head järgenavd 2 käsku, milleks on &amp;quot;head&amp;quot; ja &amp;quot;tail&amp;quot;. &amp;quot;Head&amp;quot; prindib välja esimesed n rida ja &amp;quot;tail&amp;quot; prindib välja viimased n rida. Kui on soov näha viimati listaud ridu, siis on selleks parim variant kasutada &amp;quot;tail&amp;quot; käsku.&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;head -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:head.png|600px]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;pre&amp;gt;tail -n 5 /var/log/syslog&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
[[File:tail.png|600px]]&lt;br /&gt;
&lt;br /&gt;
= Kokkuvõte =&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
= Kasutatud materjalid =&lt;br /&gt;
*http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch05_:_Troubleshooting_Linux_with_syslog&lt;br /&gt;
*http://www.kiwisyslog.com/help/syslog/index.html?protocol_facilities.htm&lt;br /&gt;
*https://www.sans.org/reading-room/whitepapers/logging/ins-outs-system-logging-syslog-1168&lt;br /&gt;
*http://linux.die.net/man/3/syslog&lt;br /&gt;
*http://www.qnx.com/developers/docs/6.3.2/neutrino/utilities/s/syslog.conf.html&lt;br /&gt;
*https://www.freebsd.org/cgi/man.cgi?syslog.conf&lt;br /&gt;
*https://library.netapp.com/ecmdocs/ECMP1155684/html/GUID-47409305-C24E-4363-B00E-9AE0451AC8DF.html&lt;br /&gt;
*http://www.ciscopress.com/articles/article.asp?p=426638&lt;br /&gt;
*http://www.howtogeek.com/117878/how-to-view-write-to-system-log-files-on-ubuntu/&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kadamsoo</name></author>
	</entry>
</feed>