2014-01-25 12:25:54 +00:00
|
|
|
# Common
|
|
|
|
#
|
|
|
|
|
|
|
|
[INCLUDES]
|
|
|
|
|
|
|
|
after = paths-overrides.local
|
|
|
|
|
|
|
|
[DEFAULT]
|
|
|
|
|
2015-10-20 01:50:03 +00:00
|
|
|
default_backend = auto
|
|
|
|
|
2014-01-25 12:25:54 +00:00
|
|
|
sshd_log = %(syslog_authpriv)s
|
2015-10-20 01:50:03 +00:00
|
|
|
sshd_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
|
|
|
dropbear_log = %(syslog_authpriv)s
|
2015-10-20 01:50:03 +00:00
|
|
|
dropbear_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2014-04-11 03:16:11 +00:00
|
|
|
# There is no sensible generic defaults for syslog log targets, thus
|
2014-08-08 19:57:41 +00:00
|
|
|
# leaving them empty here so that no errors while parsing/interpolating configs
|
2014-04-11 03:16:11 +00:00
|
|
|
syslog_daemon =
|
|
|
|
syslog_ftp =
|
|
|
|
syslog_local0 =
|
|
|
|
syslog_mail_warn =
|
|
|
|
syslog_user =
|
2015-10-20 01:50:03 +00:00
|
|
|
# Set the default syslog backend target to default_backend
|
|
|
|
syslog_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
|
|
|
# from /etc/audit/auditd.conf
|
|
|
|
auditd_log = /var/log/audit/audit.log
|
|
|
|
|
2014-07-08 15:09:25 +00:00
|
|
|
exim_main_log = /var/log/exim/mainlog
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2015-10-30 16:51:30 +00:00
|
|
|
nginx_error_log = /var/log/nginx/*error.log
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2015-10-30 16:51:30 +00:00
|
|
|
nginx_access_log = /var/log/nginx/*access.log
|
2014-01-25 12:25:54 +00:00
|
|
|
|
|
|
|
|
|
|
|
lighttpd_error_log = /var/log/lighttpd/error.log
|
|
|
|
|
|
|
|
# http://www.hardened-php.net/suhosin/configuration.html#suhosin.log.syslog.facility
|
|
|
|
# syslog_user is the default. Lighttpd also hooks errors into its log.
|
|
|
|
|
|
|
|
suhosin_log = %(syslog_user)s %(lighttpd_error_log)s
|
|
|
|
|
|
|
|
# defaults to ftp or local2 if ftp doesn't exist
|
2014-04-11 03:16:11 +00:00
|
|
|
proftpd_log = %(syslog_ftp)s
|
2015-10-20 01:50:03 +00:00
|
|
|
proftpd_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
|
|
|
# http://svnweb.freebsd.org/ports/head/ftp/proftpd/files/patch-src_proftpd.8.in?view=markup
|
|
|
|
# defaults to ftp but can be overwritten.
|
|
|
|
pureftpd_log = %(syslog_ftp)s
|
2015-10-20 01:50:03 +00:00
|
|
|
pureftpd_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2014-02-19 21:20:02 +00:00
|
|
|
# ftp, daemon and then local7 are tried at configure time however it is overwriteable at configure time
|
|
|
|
#
|
|
|
|
wuftpd_log = %(syslog_ftp)s
|
2015-10-20 01:50:03 +00:00
|
|
|
wuftpd_backend = %(default_backend)s
|
2014-02-19 21:20:02 +00:00
|
|
|
|
|
|
|
# syslog_enable defaults to no. so it defaults to vsftpd_log_file setting of /var/log/vsftpd.log
|
|
|
|
# No distro seems to set it to syslog by default
|
|
|
|
# If syslog set it defaults to ftp facility if exists at compile time otherwise falls back to daemonlog.
|
|
|
|
vsftpd_log = /var/log/vsftpd.log
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2014-02-19 21:20:02 +00:00
|
|
|
# Technically syslog_facility in main.cf can overwrite but no-one sane does this.
|
2014-01-25 12:25:54 +00:00
|
|
|
postfix_log = %(syslog_mail_warn)s
|
2015-10-20 01:50:03 +00:00
|
|
|
postfix_backend = %(default_backend)s
|
2014-01-25 12:25:54 +00:00
|
|
|
|
2014-02-19 21:20:02 +00:00
|
|
|
dovecot_log = %(syslog_mail_warn)s
|
2015-10-20 01:50:03 +00:00
|
|
|
dovecot_backend = %(default_backend)s
|
2014-02-19 21:20:02 +00:00
|
|
|
|
|
|
|
# Seems to be set at compile time only to LOG_LOCAL0 (src/const.h) at Notice level
|
|
|
|
solidpop3d_log = %(syslog_local0)s
|
|
|
|
|
2014-03-02 05:11:53 +00:00
|
|
|
mysql_log = %(syslog_daemon)s
|
2015-10-20 01:50:03 +00:00
|
|
|
mysql_backend = %(default_backend)s
|
2015-02-02 05:42:01 +00:00
|
|
|
|
2015-07-04 18:46:31 +00:00
|
|
|
roundcube_errors_log = /var/log/roundcube/errors
|
|
|
|
|
2015-02-02 05:42:01 +00:00
|
|
|
# Directory with ignorecommand scripts
|
|
|
|
ignorecommands_dir = /etc/fail2ban/filter.d/ignorecommands
|