Here is the system:
- SUSE Linux Enterprise Server 10
- syslog-ng with predefined syslog-ng.conf
- messages in /var/log/messages look like:
Feb 8 09:29:53 sles1 sshd[17529]: Accepted keyboard-interactive/pam for root from 10.30.34.64 port 4855 ssh2
What I need:
- to log event severity/facility. For instance, add <PRI> at the beginning of the message:
<15> Feb 8 09:29:53 sles1 sshd[17529]: Accepted keyboard-interactive/pam for root from 10.30.34.64 port 4855 ssh2
My question is:
How to change syslog-ng.conf to enable this kind of logging?
Thanks.