PDA

View Full Version : How can I start syslogd so I can then view the syslogd log? (I am using iptables)



terapin
05-31-2014, 02:29 PM
I am using iptables, and I have a rule that makes a log.

But I can't see the log.

I can't seem to see anything iptables or syslogd related in /var/log that has anything.

I read on a page quoting the book knoppix hacks

"most of the services log to /var/syslog, which knoppix disables by default. To start the syslog service, go to K-menu..knoppix..services..start syslog which launches a terminal which displays live output ok of /var/log/syslog"

The problem is, I don't have /sys/log/syslog

And, I can't seem to start it.

In my K-menu...Knoppix, I don't see 'services' listed and 'start syslog' listed.

I can see the sysklogd service in /etc/init.d but starting it leads to some error messages-

knoppix@Microknoppix:/var$ sudo /etc/init.d/sysklogd start
[....] Starting system log daemon...chown: cannot access `/var/log/mail.warn': No such file or directory
chown: cannot access `/var/log/user.log': No such file or directory
chown: cannot access `/var/log/daemon.log': No such file or directory
chown: cannot access `/var/log/messages': No such file or directory
chown: cannot access `/var/log/debug': No such file or directory
chown: cannot access `/var/log/auth.log': No such file or directory
chown: cannot access `/var/log/mail.err': No such file or directory
chown: cannot access `/var/log/news/news.notice': No such file or directory
chown: cannot access `/var/log/syslog': No such file or directory
chown: cannot access `/var/log/news/news.crit': No such file or directory
chown: cannot access `/var/log/mail.log': No such file or directory
chown: cannot access `/var/log/kern.log': No such file or directory
chown: cannot access `/var/log/lpr.log': No such file or directory
chown: cannot access `/var/log/mail.info': No such file or directory
chown: cannot access `/var/log/news/news.err': No such file or directory
failed!
knoppix@Microknoppix:/var$

terapin
05-31-2014, 02:30 PM
(post above is the way I want it asked, but I can't delete this post)

Werner P. Schulz
05-31-2014, 04:13 PM
You can rename '/etc/syslog-knoppix.conf' to disable the limitation of logging by Knoppix. To prevent huge files within '/var/log' you also have to install "anacron" to enable logrotate.

terapin
06-01-2014, 06:10 PM
I am having some errors trying to 'make' and I suppose 'make install' anacron.


knoppix@Microknoppix:~$ cd anacron-2.3/
knoppix@Microknoppix:~/anacron-2.3$ ls
anacron.8 COPYING gregor.h main.c matchrx.h runjob.c
anacrontab.5 global.h lock.c Makefile README TODO
ChangeLog gregor.c log.c matchrx.c readtab.c


knoppix@Microknoppix:~/anacron-2.3$ make
Makefile:57: gregor.d: No such file or directory
Makefile:57: lock.d: No such file or directory
Makefile:57: log.d: No such file or directory
Makefile:57: main.d: No such file or directory
Makefile:57: matchrx.d: No such file or directory
Makefile:57: readtab.d: No such file or directory
Makefile:57: runjob.d: No such file or directory
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" runjob.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > runjob.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" readtab.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > readtab.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" matchrx.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > matchrx.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" main.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > main.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" log.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > log.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" lock.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > lock.d"
/bin/sh -ec "cc -MM -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" gregor.c \
| sed '1s/^\(.*\)\.o[ :]*/\1.d &/1' > gregor.d"
cc -c -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" -Wall -pedantic -O2 gregor.c -o gregor.o
gregor.c: In function ‘day_num’:
gregor.c:79:5: error: assignment of read-only variable ‘isleap’
make: *** [gregor.o] Error 1



knoppix@Microknoppix:~/anacron-2.3$ sudo make
cc -c -DSPOOLDIR=\"/var/spool/anacron\" -DRELEASE=\"2.3\" -DANACRONTAB=\"/etc/anacrontab\" -Wall -pedantic -O2 gregor.c -o gregor.o
gregor.c: In function ‘day_num’:
gregor.c:79:5: error: assignment of read-only variable ‘isleap’
make: *** [gregor.o] Error 1
knoppix@Microknoppix:~/anacron-2.3$

Werner P. Schulz
06-01-2014, 07:13 PM
Why not simple install anacron?
(If not already done after installation of Knoppix)
su
aptitude update


su
aptitude install anacron

terapin
06-01-2014, 10:41 PM
ah I hadn't done apt-get update, once I did that I could do apt-get install anacron.. (I see I could've used aptitude update and aptitude install anacron) but anyhow now anacron is installed. I guess what i'd do with that to prevent the log getting too big is rm -f the log file every day or few days or so..

I have renamed that log file, /etc/syslog-knoppix.conf making it /etc/syslog-knoppix_.conf

root@Microknoppix:/# ls /etc/sysl*
/etc/syslog.conf /etc/syslog-knoppix_.conf

but I still get those errors trying to start sysklogd


root@Microknoppix:/# /etc/init.d/sysklogd start
[....] Starting system log daemon...chown: cannot access `/var/log/mail.warn': No such file or directory
chown: cannot access `/var/log/user.log': No such file or directory
chown: cannot access `/var/log/daemon.log': No such file or directory
chown: cannot access `/var/log/messages': No such file or directory
chown: cannot access `/var/log/debug': No such file or directory
chown: cannot access `/var/log/auth.log': No such file or directory
chown: cannot access `/var/log/mail.err': No such file or directory
chown: cannot access `/var/log/news/news.notice': No such file or directory
chown: cannot access `/var/log/syslog': No such file or directory
chown: cannot access `/var/log/news/news.crit': No such file or directory
chown: cannot access `/var/log/mail.log': No such file or directory
chown: cannot access `/var/log/kern.log': No such file or directory
chown: cannot access `/var/log/lpr.log': No such file or directory
chown: cannot access `/var/log/mail.info': No such file or directory
chown: cannot access `/var/log/news/news.err': No such file or directory
failed!
root@Microknoppix:/#


Thanks

Werner P. Schulz
06-02-2014, 10:12 AM
Reboot and look again at '/var/log'.