by jani » Tue Jan 14, 2014 3:04 pm
hi,,
i find difficulties to filtering some messages from log analyzer,, from what i see after installation, all log store in mysql display in web as it is.. for example..
"Failed password for root from xx.xxx.xxx.xxx More Information port xxx ssh2"
that message show too much i want to filter or mybe block some of it (base on query or anything)..
i try to understand the configuration and from filter condition but it doesnt ring the bell..
i need ur help.. is it from rsyslog.conf that i configure this or from where..
thanks guys in advance..