1、安装rsyslog和mysql交互的软件
yum
install
rsyslog-mysql -y
2、搭建好lamp平台(这里不再详细介绍)
yum
install
httpd mysql php mysql-server php-gd -y
3、导入rsyslog所用到的数据库和表
mysql -u root -p <
/usr/share/doc/rsyslog-mysql-5
.8.10
/createDB
.sql
CREATE DATABASE Syslog;
USE Syslog;
CREATE TABLE SystemEvents
(
ID int unsigned not null auto_increment primary key,
CustomerID bigint,
ReceivedAt datetime NULL,
DeviceReportedTime datetime NULL,
Facility smallint NULL,
Priority smallint NULL,
FromHost varchar(60) NULL,
Message text,
NTSeverity int NULL,
Importance int NULL,
EventSource varchar(60),
EventUser varchar(60) NULL,
EventCategory int NULL,
EventID int NULL,
EventBinaryData text NULL,
MaxAvailable int NULL,
CurrUsage int NULL,
MinUsage int NULL,
MaxUsage int NULL,
InfoUnitID int NULL ,
SysLogTag varchar(60),
EventLogType varchar(60),
GenericFileName VarChar(60),
SystemID int NULL
);
CREATE TABLE SystemEventsProperties
(
ID int unsigned not null auto_increment primary key,
SystemEventID int NULL ,
ParamName varchar(255) NULL ,
ParamValue text NULL
);
授权登陆用户:
mysql> grant all on Syslog.* to log@
'localhost'
identified by
'logpass'
;
mysql> flush privileges;
4、编辑配置文件
$ModLoad ommysql
*.info;mail.none;authpriv.none;
cron
.none :ommysql:localhost,Syslog,log,logpass
5、重启服务
service rsyslog restart