Open for Voting

syslog: variable count of top xy active hosts

Hi,

in kiwi syslog server there is an email notification which breaks down all the syslog messages by the sending hosts and create a top 20 list of the most active hosts. These count (20) is hard coded and not changeable by the user. In medium environments with some ESXi-Hosts, Cisco Catalyst and Cisco Nexus switches the hard coded value is not high enough to show the top active hosts/switches. It should be possible to configure this value by the user.

best regards,

franki

  • I'm definitely a proponent for having the ability to customize what stats are generated in that e-mail. Even to the point where I have my own stats scripts firing off at different intervals to give me what I want when I want it. I still think the basics should be configurable though and agree that there should be an option.

    In the meantime though, check out these 2 scripts:

    You'll need both, and they might take a little modification (I suggested a few bug fixes for part 2 in the comments section).