feat: auditlog syslog writer #1383
Open
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Make sure that you've checked the boxes below before you submit PR:
Summary:
Implementation of
plugintypes.AuditLogWriter
to send audit logs into syslog. Stdliblog/syslog
package has been used, so no extra dependencies needed.Writes directed into
local0
syslog facility with LOG_INFO severity by default. Interrupted transactions will have LOG_ERR severity.Changes:
SecAuditLogType
directive now acceptsyslog
value.SecAuditLog
directive now accept all supported bylog/syslog
values ofnetwork
andraddr
by patternnetwork://raddr
(e.g.udp://127.0.0.1:514
,unixgram:///var/run/syslog
). Empty value will forcelog/syslog
to select destination by it's internal logic.Limitations:
Not available for tinygo because of not verified
log/syslog
support.Not available for windows and plan9 operating systems because of
log/syslog
limitations.Thanks for your contribution ❤️