A
A
Andrew2021-10-27 10:05:19
Zabbix
Andrew, 2021-10-27 10:05:19

Zabbix using find for log monitoring?

Good afternoon, now I have a working trigger find (/ debianZabbix / log [/var/log/auth.log] ,, "like", "FAILED LOGIN") = 1 (monitors the log on the client for authorization errors from the console).
I want to add monitoring of connection errors via SSH to the trigger.
Changed the expression to find (/ debianZabbix / log [/var/log/auth.log] ,, "like", "FAILED LOGIN") = 1 or find (/ debianZabbix / log [/var/log/auth.log] . (find(/debianZabbix/log[/var/log/auth.log] ,, "like", "Failed") = 1) no.
Tell me what's wrong?
6178f97b4752c489059355.jpeg

Answer the question

In order to leave comments, you need to log in

1 answer(s)
A
Andrey, 2021-10-28
@dr753

The solution solved the problem https://www.zabbix.com/forum/in-russian/433663-%D0...

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question