mirror of
https://github.com/zeek/zeek.git
synced 2025-10-02 14:48:21 +00:00

These may be redefined to customize log rotation path prefixes, including use of a directory. File extensions are still up to individual log writers to add themselves during the actual rotation. These new also allow for some simplication to the default ASCII postprocessor function: it eliminates the need for it doing an extra/awkward rename() operation that only changes the timestamp format. This also teaches the supervisor framework to use these new options to rotate ascii logs into a log-queue/ directory with a specific file name format (intended for an external archiver process to monitor separately).
25 lines
947 B
Text
25 lines
947 B
Text
##! This is the core Zeek script to support the notion of a cluster manager.
|
|
##!
|
|
##! The manager is passive (the workers connect to us), and once connected
|
|
##! the manager registers for the events on the workers that are needed
|
|
##! to get the desired data from the workers. This script will be
|
|
##! automatically loaded if necessary based on the type of node being started.
|
|
|
|
##! This is where the cluster manager sets it's specific settings for other
|
|
##! frameworks and in the core.
|
|
|
|
@prefixes += cluster-manager
|
|
|
|
## Don't do any local logging since the logger handles writing logs.
|
|
redef Log::enable_local_logging = F;
|
|
|
|
## Turn on remote logging since the logger handles writing logs.
|
|
redef Log::enable_remote_logging = T;
|
|
|
|
## Log rotation interval.
|
|
redef Log::default_rotation_interval = 24 hrs;
|
|
|
|
@if ( ! Supervisor::is_supervised() )
|
|
## Use the cluster's delete-log script.
|
|
redef Log::default_rotation_postprocessor_cmd = "delete-log";
|
|
@endif
|