centralized logging with syslog-ng
Just wanted to point out another excellent post from the Blog O’ Matty on centralized logging with syslog-ng.
I actually helped to set up real-time web analysis with syslog-ng (using TCP) and a slightly hacked webalizer (it was ignoring multiple hits happening on the same second) from a FreeBSD/Apache web farm ~10 years ago, and have been looking into it again for my current logging needs.
His blog has consistently awesome posts (if you’re interested in systems administration), and as your doctor I highly suggest that you subscribe.