Solved

Where are the logs/how do you turn on logging in AIX?

Posted on 2000-03-07
10
267 Views
Last Modified: 2010-04-21
We have an AIX system no one knows how to use. We need to see the log files (standard /var/log/ stuff in Linux) but apparently it's not there... I'm assuming thats because its not turned on.

How do you find the logs or enable them in AIX?

0
Comment
Question by:edskee
  • 4
  • 4
  • 2
10 Comments
 
LVL 3

Expert Comment

by:freesource
ID: 2594734
Look in /var/adm

To enable logs read the man pages, AIX has syslogd just like Linux.
0
 
LVL 20

Expert Comment

by:tfewster
ID: 2595423
/etc/syslog.conf defines what is logged (& where) by syslogd
0
 
LVL 2

Author Comment

by:edskee
ID: 2596089
Freesource: if I wanted someone to tell me to read the man pages I would not have posted the question here. Jeez.
0
 
LVL 20

Expert Comment

by:tfewster
ID: 2596149
To be fair to freesource, s/he probably meant "read  the man page for syslogd".

From what I can see on the AIX box I have access to, the default location for the syslog log IS /var/log - So it's not there, someone has been messing about with /etc/syslog.conf, and may even have disabled syslogd (started by srcmstr)
0
 
LVL 2

Author Comment

by:edskee
ID: 2596413
My /etc/syslog.conf file is all commented out. Can someone post a 'standard' copy of their /etc/syslog.conf file? The man page for syslogd is a bit confusing.

Thanks!

Oh, I don't have syslogd running in my process list, however I do have /usr/sbin/syslog running... any ideas?
0
How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

 
LVL 20

Accepted Solution

by:
tfewster earned 25 total points
ID: 2596702
This standard setup will log just about everything to /var/log/syslog; Comprehensive, but irritating.
#
*.info                  /var/log/syslog
mail.debug              /var/log/maildebug
lpr.debug               /var/log/lpr.log

In AIX  4.3, it's /usr/sbin/syslogd - what's the parent process for your syslog process?
0
 
LVL 2

Author Comment

by:edskee
ID: 2596831
The main things we want to log are the user logins, so we can see who is coming in when.

The parent process? Dunno, whats the easiest way to find out?
0
 
LVL 20

Expert Comment

by:tfewster
ID: 2596910
I suggest you use "last" for tracking logins; It shows user, login device & login times. e.g. last |grep tfewster would show you my login history.

syslog will mainly show you errors, e.g. bad "su" attempts.

To find the parent process, I was thinking of
ps -f |grep syslog to get it's parent process id, then  ps -f |grep parent_process_id - sloppy, but quick.
0
 
LVL 2

Author Comment

by:edskee
ID: 2597007
Close enough... got me what I needed, thanks!
0
 
LVL 3

Expert Comment

by:freesource
ID: 2597383
Thanks, tfewster, that's exactly what I meant.  And edskee read the man page on syslog.conf it goes into a lot more detail.
0

Featured Post

Find Ransomware Secrets With All-Source Analysis

Ransomware has become a major concern for organizations; its prevalence has grown due to past successes achieved by threat actors. While each ransomware variant is different, we’ve seen some common tactics and trends used among the authors of the malware.

Join & Write a Comment

Let's say you need to move the data of a file system from one partition to another. This generally involves dismounting the file system, backing it up to tapes, and restoring it to a new partition. You may also copy the file system from one place to…
Every server (virtual or physical) needs a console: and the console can be provided through hardware directly connected, software for remote connections, local connections, through a KVM, etc. This document explains the different types of consol…
Learn how to find files with the shell using the find and locate commands. Use locate to find a needle in a haystack.: With locate, check if the file still exists.: Use find to get the actual location of the file.:
In a previous video, we went over how to export a DynamoDB table into Amazon S3.  In this video, we show how to load the export from S3 into a DynamoDB table.

743 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

12 Experts available now in Live!

Get 1:1 Help Now