EnglishFrenchSpanish

OnWorks favicon

logcheck-test - Online in the Cloud

Run logcheck-test in OnWorks free hosting provider over Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

This is the command logcheck-test that can be run in the OnWorks free hosting provider using one of our multiple free online workstations such as Ubuntu Online, Fedora Online, Windows online emulator or MAC OS online emulator

PROGRAM:

NAME


logcheck-test - test new logcheck rules easily

SYNOPSIS


logcheck-test [-q|-i] [-a|-s|-l FILE] [-e] [-P PREFIX] [-S SUFFIX] RULE
logcheck-test [-q|-i] [-a|-s|-l FILE] -r RULEFILE

DESCRIPTION


logcheck-test parses a log file for matching lines specified by a single rule or a rule
file. If using a single RULE you can set a PREFIX and a SUFFIX to write new rules easily.

OPTIONS


-h, --help
Show usage information

-a, --auth.log
Parse /var/log/auth.log for matching lines

-s, --syslog
Parse /var/log/syslog for matching lines

-l, --log-file FILE
Parse FILE for matching lines

-i, --invert-match
Show line that don't match the RULE or the RULEFILE

-q, --quiet
Suppress rule summary at the end of output

-e, --surround-rule
Surround RULE with standard prefix and suffix:

^[[:alpha:]]{3} [ :[:digit:]]{11} [._[:alnum:]-]+ RULE$

-P, --append-prefix PREFIX
Append PREFIX to rule prefix. Option can be given multiple times

-S, --prepend-suffix SUFFIX
Prepend SUFFIX to rule suffix. Option can be given multiple times

-r, --rule-file RULEFILE
Use file RULEFILE for rule input

EXAMPLES


With logcheck-test you can easily write and test new rules.

Test a single rule against /var/log/syslog:
logcheck-test -s "RULE"

Test a single rule against ~/log, surround the rule with standard prefix and suffix and
append "kernel " to prefix:
logcheck-test -l ~/log -e -P "kernel " "RULE"

Test the rules in rulefiles/linux/ignore.d.server/kernel against ~/log:
logcheck-test -l ~/log -r rulefiles/linux/ignore.d.server/kernel

Test which lines the rules in rulefiles/linux/ignore.d.server/kernel doesn't match:
logcheck-test -l ~/log -r rulefiles/linux/ignore.d.server/kernel -i

EXIT STATUS


On successful matching logcheck-test will complete with exit code 0. An exit code of 1
indicates no successful matching.

An exit code greater then 1 indicates an error occurred. Textual errors are written to the
standard error stream.

Use logcheck-test online using onworks.net services


Free Servers & Workstations

Download Windows & Linux apps

  • 1
    Alt-F
    Alt-F
    Alt-F provides a free and open source
    alternative firmware for the DLINK
    DNS-320/320L/321/323/325/327L and
    DNR-322L. Alt-F has Samba and NFS;
    supports ext2/3/4...
    Download Alt-F
  • 2
    usm
    usm
    Usm is a unified slackware package
    manager that handles automatic
    dependency resolution. It unifies
    various package repositories including
    slackware, slacky, p...
    Download usm
  • 3
    Chart.js
    Chart.js
    Chart.js is a Javascript library that
    allows designers and developers to draw
    all kinds of charts using the HTML5
    canvas element. Chart js offers a great
    array ...
    Download Chart.js
  • 4
    iReport-Designer for JasperReports
    iReport-Designer for JasperReports
    NOTE: iReport/Jaspersoft Studio Support
    Announcement: As of version 5.5.0,
    Jaspersoft Studio will be the official
    design client for JasperReports. iReport
    will...
    Download iReport-Designer for JasperReports
  • 5
    PostInstallerF
    PostInstallerF
    PostInstallerF will install all the
    software that Fedora Linux and others
    doesn't include by default, after
    running Fedora for the first time. Its
    easy for...
    Download PostInstallerF
  • 6
    strace
    strace
    The strace project has been moved to
    https://strace.io. strace is a
    diagnostic, debugging and instructional
    userspace tracer for Linux. It is used
    to monitor a...
    Download strace
  • More »

Linux commands

Ad