日韩性视频-久久久蜜桃-www中文字幕-在线中文字幕av-亚洲欧美一区二区三区四区-撸久久-香蕉视频一区-久久无码精品丰满人妻-国产高潮av-激情福利社-日韩av网址大全-国产精品久久999-日本五十路在线-性欧美在线-久久99精品波多结衣一区-男女午夜免费视频-黑人极品ⅴideos精品欧美棵-人人妻人人澡人人爽精品欧美一区-日韩一区在线看-欧美a级在线免费观看

歡迎訪問 生活随笔!

生活随笔

當前位置: 首頁 > 运维知识 > windows >内容正文

windows

NXLog采集windows日志配置conf文件

發布時間:2023/12/31 windows 33 豆豆
生活随笔 收集整理的這篇文章主要介紹了 NXLog采集windows日志配置conf文件 小編覺得挺不錯的,現在分享給大家,幫大家做個參考.

設備:win10專業版

配置文件內容:

This is a sample configuration file. See the nxlog reference manual about the

configuration options. It should be installed locally and is also available

online at http://nxlog.org/docs/

Please set the ROOT to the folder your nxlog was installed into,

otherwise it will not start.

#define ROOT C:\Program Files\nxlog
define ROOT D:\Program Files (x86)\nxlog 本程序安裝路徑

Moduledir %ROOT%\modules
CacheDir %ROOT%\data
Pidfile %ROOT%\data\nxlog.pid
SpoolDir %ROOT%\data
LogFile %ROOT%\data\nxlog.log

Module xm_syslog Module xm_charconv AutodetectCharsets gbk, utf-8, euc-jp, utf-16, utf-32, iso8859-2 Module xm_json

#define LOGFILE C:\Program Files (x86)\nxlog\data\nxlog.log
#
#Module xm_fileop

Check the size of our log file every hour and rotate if it is larger than 1Mb

#
#Every 1 hour
#Exec if (file_size(’%LOGFILE%’) >= 1M) file_cycle(’%LOGFILE%’, 2);
#

Rotate our log file every week on sunday at midnight

#
#When @weekly
#Exec file_cycle(’%LOGFILE%’, 2);
#
#

Module im_msvistalog ReadFromLast TRUE * * * $raw_event = "0|EventlogType=" +$Channel + "|DetectTime=" +$EventTime + "|EventSource=" +$SourceName + "|EventID=" +$EventID + "|EventType=" +$EventType + "|EventCategory="+$Task + "|User=" +$AccountName+ "|ComputerName=" +$Hostname + "|Description=" +$Message; # Exec log_info("raw event is: " + $raw_event); Module im_file File 'D:\\Program Files (x86)TEXT.LOG Exec convert_fields("AUTO", "utf-8"); SavePos TRUE #ReadFromLast TRUE #Exec $raw_event = 'DbAppSOCAgent get log from "abc" ' + $raw_event; #Exec log_info("raw event 2 is: " + $raw_event);

#
#Module im_file
#File ‘C:\Program Files\Microsoft SQL Server\110\Setup Bootstrap\Log\20151217_130836\*.log’
#SavePos TRUE
#ReadFromLast TRUE
#Exec $raw_event = 'DbAppSOCAgent get log from “sqlserver” ’ + $raw_event;
#Exec log_info("raw event 3 is: " + $raw_event);
#

Module om_udp Host 192.168.1.142 日志平臺服務器地址 Port 514 # Path eventlog,in2,in3 => out Path eventlog,in2 => out

總結

以上是生活随笔為你收集整理的NXLog采集windows日志配置conf文件的全部內容,希望文章能夠幫你解決所遇到的問題。

如果覺得生活随笔網站內容還不錯,歡迎將生活随笔推薦給好友。