-
Website
http://smartic.us -
Original page
http://smartic.us/2009/09/16/yerdoinitwrong-episode-1-logging-with-syslog/ -
Subscribe
All Comments -
Community
-
Top Commenters
-
bryanl
27 comments · 3 points
-
jjulian
3 comments · 1 points
-
scottmotte
3 comments · 1 points
-
TomK32
2 comments · 1 points
-
joegrossberg
2 comments · 2 points
-
-
Popular Threads
-
10 developer skills needed in 2010
2 weeks ago · 12 comments
-
Programmer vs Rap Star
2 weeks ago · 9 comments
-
Semantic Versioning
1 week ago · 2 comments
-
10 developer skills needed in 2010
* Splunk can also take in logs from non-Rails apps (e.g. have your Rails, Java and Apache logs all in one place) and multiple projects
* Splunk can be overly strict about the logging format it expects :/
* Splunk is not real-time, unlike tail -f
One size does not fit all, and a 10 req/s site is atypical.
@joegrossberg Splunk 3.x has a live-tail feature that I find is only ~2 seconds off real-time. Splunk 4.x is considerably faster and the regular search is only ~5 seconds off real-time (but no Live Tail in 4.x yet).
index = <%= environment %>
_blacklist = \.(tgz|gz)$
[monitor:///var/log]
disabled = false
[monitor:///data/onehub/shared/log]
disabled = false
[monitor:///data/onehub/shared/pids]
disabled = false
[monitor:///vol/log/mysql-slow.log]
disabled = false
[monitor:///vol/log/mysqld.log]
disabled = false
podcast
======