This repository has been archived by the owner on Feb 12, 2022. It is now read-only.
forked from logplex/pg_logplexcollector
/
syslog.go
74 lines (63 loc) · 1.58 KB
/
syslog.go
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
package main
import (
"log"
"net"
"os"
"time"
"github.com/logplex/logplexc"
)
func syslogWorker(die dieCh, conn net.PacketConn, cfg logplexc.Config, sr *serveRecord) {
// Make world-writable so anything can connect and send logs.
// This may be be worth locking down more, but as-is unless
// pg_logplexcollector and the Postgres server share the same
// running user common umasks will be useless.
fi, err := os.Stat(sr.P)
if err != nil {
log.Fatalf(
"exiting, cannot stat just created socket %q: %v",
sr.P, err)
}
err = os.Chmod(sr.P, fi.Mode().Perm()|0222)
if err != nil {
log.Fatalf(
"exiting, cannot make just created socket "+
"world-writable %q: %v",
sr.P, err)
}
cfg.Logplex = sr.u
buf := make([]byte, 9*KB)
target, err := logplexc.NewClient(&cfg)
if err != nil {
log.Fatalf("could not create auditing client: %v", err)
}
for {
select {
case <-die:
return
default:
break
}
err := conn.SetReadDeadline(time.Now().Add(time.Duration(1 * time.Second)))
if err != nil {
log.Fatalf("could not set connection deadline: %v", err)
}
n, _, err := conn.ReadFrom(buf)
if n > 0 {
// Just send the message wholesale, which
// leads to some weird syslog-in-syslog
// framing, but perhaps it's good enough.
target.BufferMessage(134, time.Now(),
"audit", "-", append([]byte(
"instance_type=shogun identity="+
sr.I+" "), buf[:n]...))
}
if err != nil {
if err, ok := err.(net.Error); ok {
if err.Timeout() || err.Temporary() {
continue
}
}
log.Fatalf("got syslog datagram error %v", err)
}
}
}