Site Tools


admin-log

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
admin-log [2024/09/15 02:33] – [Web Monitor] -Condense, resize screenshot 644x261 hogwildadmin-log [2025/03/09 15:11] (current) – [Syslog] -Condense Log to Remote System hogwild
Line 6: Line 6:
 ===== Syslog ===== ===== Syslog =====
  
-**Log Internally: **This enables FreshTomato'logging. By default, FreshTomato saves logs to the router's internal memory, where they may be extracted or viewed directly on the [[status-log|Logs]] page. These logs will consume router memory, but may be viewed directly on the router itself. (Default: Enabled).+**Log Internally: **enables FreshTomato logging.
  
-**Max size before rotate: **// Log rotation// is a process that creates new log files and archives & removes old ones to save drive space. The number entered here specifies the maximum storage space log files can occupy before they are rotated, (in Kb).+By default, FreshTomato saves logs to the router's internal memory, where they may be extracted or viewed directly on the [[status-log|Logs]] page. The logs consume router memorybut may be viewed directly on the router itself. (Default: Enabled).
  
- \\ {{::administration-logging-syslog-2024.1.png?696}}+ \\ 
 + 
 +**Max size before rotate: **// //specifies the maximum space log files can occupy before they are rotated, (in Kb). 
 + 
 +//Log rotation// creates new log files and archives & removes old ones to save drive space. The number entered here 
 + 
 + \\  \\ {{::administration-logging-syslog-2024.1.png?696}}
  
 ** ** \\ ** ** \\
  
-**Number of rotated logs to keep:** Specifies how many rotated log files will be maintained in the archive of rotated logs.+**Number of rotated logs to keep:** specifies how many rotated log files will be maintained in the rotated logs archive. 
 + 
 + \\ 
 + 
 +**Custom Log File Path: **lets you set a custom log file path. 
 + 
 +A displayed tip reminds you to check the path exists and is writable. (Default path: /var/log/messages). 
 + 
 + \\
  
-**Custom Log File Path: **Checking this lets you specify a custom path for the log file. A displayed tip reminds you to check the path exists and is writable. (Deafult path: /var/log/messages).+**Log To Remote System: **provides network support to the syslogd facility.
  
-**Log To Remote System: **Enabling this provides network support to the syslogd facility. Network support means that messages can be forwarded from one node running syslogd to another node running syslogd where they will be actually logged to disk file. ((+Thus, messages can be forwarded from one node running syslogd to another running syslogdwhere they'll be logged to disk. ((
 [[https://linux.die.net/man/8/syslogd|https://linux.die.net/man/8/syslogd]] [[https://linux.die.net/man/8/syslogd|https://linux.die.net/man/8/syslogd]]
 )) ))
  
-**IP Address / Port:** Here, enter the IP address of the host to receive syslog data, and the port over which data will be sent.+ \\
  
-**Generate Marker:** Makes log files easier to read. Checking this causes the word "——MARK—–"  to be inserted into the log\\  at the specified interval.+**IP Address / Port:** the IP address of the host to receive syslog data, and the port on they are sent. 
 + 
 + \\ 
 + 
 +**Generate Marker:**  makes log files easier to read. Checking this causes "——MARK—–"  to be inserted into the log\\ at the specified interval. 
 + 
 + \\
  
   * Disabled   * Disabled
Line 35: Line 55:
 **Events Logged:** **Events Logged:**
  
-  * Access Restriction - Checking this causes logging of Access Restriction events. + \\ 
-  * Cron - Causes Cron events to be logged. + 
-  * DHCP Client - Causes logging of DHCP IP addressing events. +  * Access Restriction - causes Access Restriction events to be logged
-  * NTP - Causes logging of Network Time Protocol events. +  * Cron - causes Cron events to be logged. 
-  * Scheduler - Causes logging of events configured in the Scheduler menu.+  * DHCP Client - causes DHCP IP addressing events to be logged
 +  * NTP - causes Network Time Protocol events to be logged
 +  * Scheduler - causes events set in the Scheduler menu to be logged.
  
  \\  \\
  
-**Minimum Log Level:**  In this menu, you select the minimum level of messages to be logged.+**Minimum Log Level:**  selects the minimum level of messages to be logged.
  
-Here, "minimum" means that whichever option you select from the list, that level's messages and all those \\ higher in the list will be logged.+"Minimum" means whichever option you select, that level's messages and all those above it in the list will be logged.
  
-  * Emergency - Only Emergency-level messages will be logged. + \\ 
-  * Alert - Messages categorized as Alert and higher will be logged. + 
-  * Critical - Messages categorized as Critical and higher will be logged. +  * Emergency - only Emergency-level messages will be logged. 
-  * Error - Messages of Error level or higher will be logged. +  * Alert - messages categorized as Alert and higher will be logged. 
-  * Warning - Messages of Warning level or higher will be logged. +  * Critical - messages categorized as Critical and higher will be logged. 
-  * Notice - Messages of Notice level or higher will be logged. +  * Error - messages of Error level or higher will be logged. 
-  * Info - Messages of Information level or higher will be logged. +  * Warning - messages of Warning level or higher will be logged. 
-  * Debug - Debug-level information and all other levels will be logged.+  * Notice - messages of Notice level or higher will be logged. 
 +  * Info - messages of Information level or higher will be logged. 
 +  * Debug - debug-level informationall other levels will be logged.
  
  \\  \\
  
-**Connection Logging: **+**Connection Logging:** 
 + 
 + \\
  
   * Inbound   * Inbound
-    * Disabled - Disables logging of incoming connections.  +    * Disabled - disables logging of incoming connections.  
-    * If Blocked by Firewall - Logs incoming connection attempts blocked by the firewall. +    * If Blocked by Firewall - logs incoming connection attempts blocked by the firewall. 
-    * If Allowed by Firewall - Logs incoming connection attempts allowed by the firewall. +    * If Allowed by Firewall - logs incoming connection attempts allowed by the firewall. 
-    * Both - Logs all incoming connection attempts.+    * Both - logs all incoming connection attempts.
   * Outbound    * Outbound 
-    * Disabled - Disables logging of outgoing connections. +    * Disabled - disables logging of outgoing connections. 
-    * If Blocked by Firewall - Logs outgoing connection attempts blocked by the firewall.  +    * If Blocked by Firewall - logs outgoing connection attempts blocked by the firewall.  
-    * If Allowed by Firewall - Logs outgoing connection attempts allowed by the firewall.  +    * If Allowed by Firewall - logs outgoing connection attempts allowed by the firewall.  
-    * Both - Logs all outgoing connection attempts. +    * Both - logs all outgoing connection attempts. 
-  * Limit - Here, enter the maximum messages per minute to be logged in the system log. \\ Enter '0for unlimited. (Default: 60).+  * Limit - the maximum messages per minute to be logged in the system log. \\ Enter "0for unlimited. (Default: 60).
  
  
 ===== Web Monitor ===== ===== Web Monitor =====
  
-Clicking **Enable >>** Takes you to the Administration/Logging page (including Syslog settings)+**Enable >>** takes you to the //Administration///[[admin-log|Logging]] menu (and Syslog settings).
  
-**Monitor Web Usage:** Checking or unchecking this enables or disables Web Monitoring. (Default: Disabled)+ \\
  
-**Monitor**: Select the Device/s you wish to monitor (All Computers / The following / All except)(Default: All Computers/Devices).+**Monitor Web Usage:** enables/disables Web Monitoring. (Default: Disabled). 
 + 
 + \\ 
 + 
 +**Monitor**: select the Device/s you wish to monitor
 + 
 + \\ 
 + 
 +  * All Computers /Devices * - monitors all devices (Default). 
 +  * The following - monitors only devices entered here. 
 +  * All except - monitors all devices except those entered here.
  
  \\  \\
Line 89: Line 125:
  \\  \\
  
-**Number of Entries to remember**: Here, enter the number of **Domains** visited and the number of **Searches** FreshTomato will record in the log file. Entering "0" makes the number unlimited (and therefore) allows an unlimited log size. Make certain you the have storage space.+**Number of Entries to remember**: the number of //Domains// visited and number of //Searches// to record in the log.
  
-**Daily Backup**: If checkedenables backup of Web Monitor logs to the default backup directory(Default: Disabled).+Entering: "0" disables logging of domains / searches. 
 +Almost all sites and search engines nowadays use http**s** so not every domain can be loggedonly those invoked with httpAs all search engines use https logging of searches has become impossible, so this feature is not functional anymore.
  
-**Clear Data After Backup**: If enabled, this will empty the log file after the backup is performed. (Default: Disabled)+ \\ 
 + 
 +**Daily Backup**: enables backup of Web Monitor logs to the default backup directory. (Default: Disabled). 
 + 
 + \\ 
 + 
 +**Clear Data After Backup**: empties the log file after backup is performed. (Default: Disabled) 
 + 
 + \\
  
-**Backup Directory**: Specifies where backup files will be stored. (Default: /tmp).+**Backup Directory**: specifies where backup files will be stored. (Default: /tmp).
  
  \\  \\
  
-NOTE: Contents in the default (\tmpfolder are emptied after a reboot. You might consider using USB/CIFS/JFFS storage as an alternative for more permanent storage.+NOTE: The contents of the default "/tmpfolder are emptied on reboot. Consider using USB/CIFS/JFFS as permanent storage.
  
  
-===== Web Usage/Web Monitor Notes =====+===== Web Usage/Web Monitor Notes and Troubleshooting =====
  
-Web usage will not work properly if the FreshTomato client you wish to monitor is running a direct TOR or VPN connection to the Internet. FreshTomato cannot monitor direct TOR or VPN connections because they are already encrypted.+Web usage **won'work properly** if the FreshTomato client monitored is running a direct TOR or VPN Internet connection. FreshTomato cannot monitor such connections since they are already encrypted. This can also include some IPv6 tunneling protocols, such as 6in4 Static tunnel.
  
  \\  \\
admin-log.1726363985.txt.gz · Last modified: 2024/09/15 02:33 by hogwild