ANTES:
SERVER:/etc/syslog-ng # tail -3 syslog-ng.conf
#
#
log { source(src); destination(/var/log/messages); };
SERVER:/etc/syslog-ng #
EDITAR O ARQUIVO syslog-ng.conf:
vi /etc/syslog-ng/syslog-ng.conf
DEPOIS:
SERVER:/etc/syslog-ng # tail -3 syslog-ng.conf
#log { source(src); destination(/var/log/messages); };
filter heartbeat_filter { not match("PFILTER-DROP") and not match("DST=192.168.202.255") and not match("PROTO=UDP"); };
log { source(src); filter(heartbeat_filter); destination(/var/log/messages); };
SERVER:/etc/syslog-ng #
RESTART SYSLOG-NG
/etc/init.d/syslog restart # or whatever you use to restart syslog-ng
# now check
ROTAÇÃO SE NECESSÁRIA
logrotate /etc/logrotate.conf