ArticlesArticles Most Popular ArticlesMost Popular Articles
RSS Feeds
DrillDown Icon Table of Contents
DrillDown Icon 2020 Official Holidays & Support Schedule
DrillDown Icon IMPORTANT: End of Life of SHA1 on Windows Server 2003
DrillDown Icon IMPORTANT: Supported Operating Systems
DrillDown Icon PLEASE READ: Our Update Server IPs Have Changed
DrillDown Icon Support
DrillDown Icon modusGate for Microsoft Azure
DrillDown Icon modusCloud
DrillDown Icon Alleviating Spam – Best Practices
DrillDown Icon directQuarantine Technical Information
DrillDown Icon modusMail & modusGate Technical Information
DrillDown Icon Documentation & Release Information
DrillDown Icon Known Issues (non-release related)
DrillDown Icon Configuration Information
DrillDown Icon modusGate & modusMail
DrillDown Icon How-To: Configure TLS for POP, IMAP, SMTP
DrillDown Icon How-To: Install modus Web Components on a Separate Server
DrillDown Icon Info: Configuring modus with a Proxy Server
DrillDown Icon Info: BATV Default Subject Tags
DrillDown Icon How-To: Force Spam Updates
DrillDown Icon How-to: Repair databases that are missing objects such as indexes or constraints
DrillDown Icon How-to: Log Modus Logs to a *nix Host
DrillDown Icon How-To: Bypass Attachment Filtering TO: Certain Users or FROM: Certain Users
DrillDown Icon Info: What is an .ASY File Extension
DrillDown Icon How-To: Reduce Image Spam by Using Dynamic IP Blocklists
DrillDown Icon How-To: Enable Persist Sorting Order
DrillDown Icon Info: Fingerprinting Explained
DrillDown Icon Info: RBL Check After AUTH LOGIN
DrillDown Icon How-To: Configure ODBC for a 64-bit environment
DrillDown Icon Info: Quarantine Clean-up Process in Modus
DrillDown Icon How-To: Completely Uninstall Your Modus Product
DrillDown Icon Info: SNMP OIDs Used by Modus
DrillDown Icon Info: Testing SMTP Connections
DrillDown Icon Info: Upgrading From a Previous Version to Modus 5.x
DrillDown Icon How-To: Allow Users to Disable Quarantine Reports
DrillDown Icon How-To: Archive Messages in Modus
DrillDown Icon How-To: Attach Original Messages to Forbidden Attachment Notices
DrillDown Icon How-To: Change the Banner Greeting
DrillDown Icon How-To: Change the SMTP Parameters for the Customer Support Feature
DrillDown Icon How-To: Configure the Quarantine Database in PostgreSQL
DrillDown Icon How-To: Configure the Mailbox Directory on a Share
DrillDown Icon How-To: Delete Viruses and Forbidden Attachments from Quarantine
DrillDown Icon How-To: Disable Outbound Filtering for Specific Users
DrillDown Icon How-To: Disable Scanning for Trusted Sources
DrillDown Icon How-To: Effectively Set-up the Spam and Virus Performance Tabs
DrillDown Icon How-To: Enable Attachment Release from the Quarantine Reports
DrillDown Icon How-To: Improve the Speed of an Extended Database for Authentication
DrillDown Icon How-To: Increase the Maximum Number of Headers / Hops
DrillDown Icon How-To: Manually Compact the Quarantine Database in Access
DrillDown Icon How-To: Move ModusMail or ModusGate from One Machine to Another
DrillDown Icon How-To: Properly Test the Modus Scan Engine
DrillDown Icon How-To: Run Both MS and Modus SMTP Services
DrillDown Icon How-To: Configure the Modus Remote Console
DrillDown Icon How-To: Specify an SMTPDS IP Address
DrillDown Icon How-To: Switch Mailboxes from Registry to the Extended DB
DrillDown Icon How-To: Turn Off Corrupt Attachment Scanning
DrillDown Icon Announcement: ORDB has Shut Down
DrillDown Icon How-To: Upgrade modusMail & modusGate
DrillDown Icon Info: SCAV2 requires specific port to be opened
DrillDown Icon Sonicwall blocking Avira updates
DrillDown Icon Info: Help Improve modusGate
DrillDown Icon modusGate Only
DrillDown Icon modusMail Only
DrillDown Icon SQL Server Information
DrillDown Icon MySQL Information
DrillDown Icon Security
DrillDown Icon Sieve
DrillDown Icon Spam and False-Positives
DrillDown Icon Statistics and Monitoring Section
DrillDown Icon Web Components
DrillDown Icon Troubleshooting
DrillDown Icon Hardware & OS System Requirements
DrillDown Icon Tools
DrillDown Icon Other Product Technical Information
DrillDown Icon Professional Services
DrillDown Icon Newsletters
  Email This ArticlePrint PreviewPrint Current Article/Category and All Sub-Articles/Categories
 
How-to: Log Modus Logs to a *nix Host
 

Product: All

Version & Build: All

 

 

 

Programs used:

 

 

Tested with:

 

  • Gentoo Linux
  • Windows 2003 Server
  • ModusMail

 

 

 

Procedures:

 

  • Configure syslog-ng on the *nix machine (loghost) to accept incoming syslog connections on UDP port 514:
    • /etc/syslog-ng/syslog-ng.conf: udp(port(514))

 

  • Restart syslog-ng on the *nix server

 

 

  • Once installed create a file named syslog.host and place it in
    C:\Program Files\syslog\etc\syslog.host

 

  • Contents of syslog.host is the name or the ip of the *nix syslog host running syslog-ng followed by the port (default 514):
    • loghost:514

 

 

  • Run the logger/tail command:
    • C:\SFU\commontail -f C:\path\to\modus\logs\OPR20070208.LOG  | logger -t MODUS

 

  • Logger command line options:
     -f = File to feed/tail to the syslog daemon
     -t = Tag to prepend to the messages
     -l = Hostname to log to (loghost)
     -a = port to use (514 is the udp port for syslog)
     -m = protocol to use (udp)
     -p = priority to log to (user.notice is the default)

 

 

 

Example output on the loghost:

 #tail -f /var/log/messages
 Feb  8 15:51:42 SST-NG modus: <<< 550 <foo@foo.com is not a valid mailbox
 Feb  8 15:51:42 SST-NG modus: ---- SMTPDS log entry made at 02/01/2007 23:59:43
 Feb  8 15:51:42 SST-NG modus: This is session 048EB510
 Feb  8 15:51:42 SST-NG modus: Protocol error: 451 VS14-PR Mailbox bounce
 arrival rate exceeds system limit (#4.2.2) mailinglist@ncix.net\r\n
 Feb  8 15:51:42 SST-NG modus: ---- SMTPRS log entry made at 02/01/2007 23:59:55
 Feb  8 15:51:42 SST-NG modus: SMTP command failed when talking to 1.2.3.4:
 Feb  8 15:51:42 SST-NG modus:  RCPT TO: <foo@foo.com
 Feb  8 15:51:42 SST-NG modus: <<< 550 5.1.1 <foo@foo.com is not a valid mailbox


 

Notes:

  • Ideally you can create a batch file to pickup new log files from modus
     when they change
  •  Another tail program you can use is multitail which comes with the cygwin
     tools (
    http://www.cygwin.com)  this allows you to tail multiple files and merge the output into logger
  • Vircom does not know how much of a performance hit this can put on the box but you can force the logs (OPR*.LOG) to a syslog interface

Modified 4/5/2007
Keywords: syslog tail.exe linux
Article ID: 1603