Difference between revisions of "Multitail"
Jump to navigation
Jump to search
(add pflog color scheme for multitail) |
(ntsyslog addition for multitail) |
||
Line 12: | Line 12: | ||
cs_re:red:\ [SRPF]\ | cs_re:red:\ [SRPF]\ | ||
cs_re_s:red:length\: (.*)$ | cs_re_s:red:length\: (.*)$ | ||
+ | |||
+ | |||
+ | === ntsyslog === | ||
+ | |||
+ | # | ||
+ | # Windows (NTsyslog) | ||
+ | colorscheme:ntsyslog:Windows NTsyslog | ||
+ | cs_re:cyan:^[A-Z][a-z][a-z]\ [0-9][0-9]\ [0-9][0-9]:[0-9][0-9]:[0-9][0-9]\ | ||
+ | cs_re_s:magenta:...:[0-9][0-9]\ ([A-Za-z]+) | ||
+ | cs_re_s:green:...\[(info)\] | ||
+ | cs_re_s:yellow:...\[(warning)\] | ||
+ | cs_re_s:red:...\[(failure)\] |
Revision as of 22:33, 18 January 2007
Multitail Color Schemes
pflog
# multitail -cS pflog -l 'tcpdump -n -s0 -i pflog0' colorscheme:pflog:pflog cs_re:cyan:^[0-9][0-9]:[0-9][0-9]:[0-9][0-9]\.[0-9]+\ cs_re:green:[0-9]+\.[0-9]+\.[0-9]+\.[0-9]+ cs_re_s:yellow:....(\.[0-9]+):\ cs_re_s:yellow:....(\.[0-9]+\ ) cs_re_s:magenta::\ (.*),\ cs_re:red:\ [SRPF]\ cs_re_s:red:length\: (.*)$
ntsyslog
# # Windows (NTsyslog) colorscheme:ntsyslog:Windows NTsyslog cs_re:cyan:^[A-Z][a-z][a-z]\ [0-9][0-9]\ [0-9][0-9]:[0-9][0-9]:[0-9][0-9]\ cs_re_s:magenta:...:[0-9][0-9]\ ([A-Za-z]+) cs_re_s:green:...\[(info)\] cs_re_s:yellow:...\[(warning)\] cs_re_s:red:...\[(failure)\]