Rsyslog stops logging to all files after adding a TCP log-forwarding rule
Issue
-
After adding a new rule to the end of rsyslog.conf to send log entries to a remote host via tcp (using a directive like "
*.info @@10.1.1.1
") and restarting rsyslog, no new log entries appear on the remote host, /var/log/messages, or any other log files. -
Rsyslog not able to read logs in realtime when using TCP and remote host is down
Environment
- rsyslog
- Red Hat Enterprise Linux
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.