Tuesday, January 03, 2006

Analyzing logs. Tools and methods.

About time that I check out Splunk and their selfproclaimed awesome logtool. It sure looks promising, and for a wet dream for all System Administrators.

Excerpt from Splunk's website.

What Splunk can do for you?

  • System administrators can find the root cause of problems quickly and locate latent systems issues before they cause downtime.
  • Developers can debug interactions among multiple tiers and components in the code-test cycle, the migration from development to production or during production escalations.
  • Help desk and support teams can investigate reported incidents and alerts right away without having to reproduce the problem or call in senior analysts or developers.
So right now, I will kickstart an installation of Splunk and check out all the nitty gritty techie stuff.
Next out is syslog next generation aka syslog-ng. Unix syslog will of course be covered, but at a later time.

Parse your logs with care, and alway make backups before you sed/awk the cr.p out of them.

BRB

ALX

Notes: analyse, (analyze US)

1 comment:

William Wilson said...

right on. I will check this out. I am tech support...