Syslog - Generic Linux OS
Device Details
Device Name | Syslog - Generic Linux OS |
Vendor | Linux |
Device Type | Linux OS |
Supported Model Name/Number | N/A |
Supported Software Version | N/A |
Collection Method | Syslog |
Configurable Log Output | N/A |
Log Source Type | Syslog - Generic Linux OS |
Log Processing Policy | LogRhythm Default V 2.0 |
Exceptions | N/A |
Additional Information | https://www.rsyslog.com/doc/v8-stable/configuration/templates.html https://rsyslog-5-8-6-doc.neocities.org/rsyslog_conf_templates |
Support for Linux Application Logs
This new Linux LST does not support Linux application logs. Linux application logs are supported separately with respective log source types. If you are streaming Linux application logs through Syslog - Generic Linux OS, we recommend using log source virtualization to stream application logs
For more information, see Log Source Virtualization.
Supported Log Messages
(List of LR tags used to parse the log information for each message type)
Type | Product Version | Supported Schema Fields |
---|---|---|
Account Modified | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <account>, <tag2>, <group> |
Account Password Changed | N/A | <severity>, <dip>, <dname>, <process>, <processid>, <account> |
Anacron Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <object>, <tag2> |
Apparmor Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Apport Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Auditd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Augenrules Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Catch All : Level 1 | N/A | <severity>, <tag1> |
CHFN Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Chronyd Messages | N/A | <severity>, <tag1>, <dip>, <sname>, <dname>, <process>, <processid>, <tag2>, <amount> |
Crond Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <login>, <command>, <object> |
Dbus Broker Message | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Dbus Daemon Message | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
DNF Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Dracut Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
FSCK Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Gpasswd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <account>, <tag2>, <login>, <group> |
Group Created | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <group> |
Group Deleted | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <group> |
Group Modified | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <group>, <tag2> |
Hibernate Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Hostname Changed | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <objectname> |
Journal Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2> |
Journal Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Kdump Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Kernel Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process> |
Login Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Login Messages | N/A | <severity>, <dip>, <dname>, <process>, <processid>, <tag1>, <login> |
LVM Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
ModemManager Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Modules Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
MOTD Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Multipathd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Network Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <dinterface>, <status>, <tag2>, <dip>, <sip> |
Network Daemon Messages - Wait Online | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Networkd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
NetworkManager Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <dinterface> |
PAM Helper Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <login> |
Polkitd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Rc.local Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Resolve Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Rsyslogd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Run-parts Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <object>, <tag2> |
SETroubleshoot Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Snapd Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
SSHD Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <login>, <sip>, <sport> |
SU Messages | N/A | <severity>, <dip>, <dname>, <process>, <account>, <login> |
Sudo Messages | N/A | <severity>, <dip>, <dname>, <process>, <tag1>, <account>, <login>, <command> |
System Daemon General Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Udev Admin Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Udev Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
Udisk Daemon Messages | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid> |
User Account Created | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <account>, <group> |
User Account Deleted | N/A | <severity>, <tag1>, <dip>, <dname>, <process>, <processid>, <tag2>, <account>, <group> |
Revision History
KB Version | Log Type | Change Type | Details |
---|---|---|---|
KB 7.1.672.0 | Syslog - Generic Linux OS | New Device Documentation | N/A |