[Logwatch-Devel] Ideas for 6.1: Normalized Umatched processing
kirk at kaybee.org
Thu Feb 24 09:59:12 MST 2005
On Thu, 24 Feb 2005, Kenneth Porter wrote:
> I'd like to suggest moving all Unmatched processing to Logwatch.pm.
> Currently it's handled in two distinct ways: Either by appending the
> unmatched strings to an array (which generates tons of lines in the report
> for some noisy services) or by building a hash of incidence counts keyed by
> content. The hash loses the original ordering of multi-line stuff, though.
> Perhaps the hash could remember the order that lines are first seen, and
> report them in that order.
I think that is a great idea -- the more we move into Logwatch.pm, the
Kirk Bauer <kirk at kaybee.org>
http://linux.kaybee.org | www.autorpm.org | www.logwatch.org
More information about the Logwatch-Devel