[Bug 228917] [NEW] Filter/group some of postfix log output

Wladimir Mutel mwg at mwg.dp.ua
Sat May 10 09:03:22 BST 2008


Public bug reported:

Binary package hint: logwatch

On some of my systems, spam filtering with postfix+amavis is
implemented. During its operation, it generates quite a lot of messages
in the log, of the folowing kind :

postfix/smtpd[nnnn]: lost connection after DATA (0 bytes) from
unknown[x.y.z.t]

Summarising the logs, logwatch puts all of them into "Unmatched entries"
subsection, so its "Postfix" section in the daily report bloats up the
whole message, turning it into quite a big blanket with all of these
"lost connection after DATA" lines listed as they are and often taking
about 90% of the whole report.

I would propose to filter log records by string "lost connection after
DATA (0 bytes)" and don't include these lines in the report, or extract
IP addresses from these lines and output only a terse list of them. It
would reduce the daily report size and make it shorter and more
meaningful.

My Ubuntu is Hardy, and my logwatch is 7.3.6-1ubuntu1 .

** Affects: logwatch (Ubuntu)
     Importance: Undecided
         Status: New

-- 
Filter/group some of postfix log output
https://bugs.launchpad.net/bugs/228917
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to logwatch in ubuntu.



More information about the Ubuntu-server-bugs mailing list