Chapter 15.
359
Configuring Subsystem Logs
The Certificate System subsystems create log files that record events related to activities, such as
administration, communications using any of the protocols the server supports, and various other
processes employed by the subsystems. While a subsystem instance is running, it keeps a log of
information and error messages on all the components it manages. Additionally, the Apache and
Tomcat web servers generate error and access logs.
Each subsystem instance maintains its own log files for installation, audit, and other logged functions.
Log plug-in modules are listeners which are implemented as Java
™
classes and are registered in the
configuration framework.
All the log files and rotated log files, except for audit logs, are located in the
/var/
log/
subsystem_name
directory, by default.
Regular audit logs are located in the
/var/log/
subsystem_name
directory with other types of logs,
while signed audit logs are written to
/var/log/
subsystem_name
/signedAudit/
. The default
location for logs can be changed by modifying the configuration.
15.1. An Overview of Log Settings
The Certificate System subsystem log files record events related to operations within that specific
subsystem instance. For each subsystem, different logs are kept for issues such as installation,
access, and web servers.
The way that logs are configured can affect Certificate System performance. For example, log file
rotation keeps logs from becoming too large, which slows down subsystem performance. This section
explains the different kinds of logs recorded by Certificate System subsystems and covers important
concepts such as log file rotation, buffered logging, and available log levels.
•
Section 15.1.1, “Services That Are Logged”
•
Section 15.1.2, “Log Levels (Message Categories)”
•
Section 15.1.3, “Buffered and Unbuffered Logging”
•
Section 15.1.4, “Log File Rotation”
15.1.1. Services That Are Logged
All major components and protocols of Certificate System log messages to log files.
Table 15.1,
“Services Logged”
lists services that are logged by default. To view messages logged by a specific
service, customize log settings accordingly. For details, see
Section 15.6, “Viewing Logs”
.
Service
Description
ACLs
Logs events related to access control lists.
Administration
Logs events related to administration activities, such as HTTPS communication between the Console and the instance.
All
Logs events related to all the services.
Authentication
Logs events related to activity with the authentication module.
Certificate Authority
Logs events related to the Certificate Manager.
Содержание CERTIFICATE SYSTEM 8.0 - ADMINISTRATION
Страница 1: ...Red Hat Certificate System 8 0 Admin Guide Publication date July 22 2009 updated on March 25 2010 ...
Страница 42: ...20 ...
Страница 43: ...Part I Setting up Certificate Services ...
Страница 44: ......
Страница 190: ...168 ...
Страница 208: ...186 ...
Страница 223: ...Part II Additional Configuration to Manage CA Services ...
Страница 224: ......
Страница 256: ...234 ...
Страница 270: ...248 ...
Страница 280: ...258 ...
Страница 292: ...270 ...
Страница 293: ...Part III Managing the Subsystem Instances ...
Страница 294: ......
Страница 363: ...Managing RA Users 341 5 The user details page shows the person s UID full name email address and user SSL certificate ...
Страница 408: ...386 ...
Страница 438: ...416 ...
Страница 439: ...Part IV References ...
Страница 440: ......
Страница 503: ...Netscape Defined Certificate Extensions Reference 481 OID 2 16 840 1 113730 13 ...
Страница 504: ...482 ...
Страница 556: ...534 ...
Страница 564: ...542 ...