summaryrefslogtreecommitdiffstats
path: root/roles/common/tasks
diff options
context:
space:
mode:
authorGuilhem Moulin <guilhem@fripost.org>2014-06-30 03:34:50 +0200
committerGuilhem Moulin <guilhem@fripost.org>2015-06-07 02:52:09 +0200
commitee4345cfc93747587608f0a87497123a6cacb946 (patch)
tree1b8cf7efb15e66f695adf4ae8bc79dbe00683eba /roles/common/tasks
parente1cc46486b686df85cf30073878c1ee69e320d1b (diff)
Log SASL usernames for longer, but don't include mail.log into syslog.
Diffstat (limited to 'roles/common/tasks')
-rw-r--r--roles/common/tasks/logging.yml31
1 files changed, 26 insertions, 5 deletions
diff --git a/roles/common/tasks/logging.yml b/roles/common/tasks/logging.yml
index 3215ebe..9430d0b 100644
--- a/roles/common/tasks/logging.yml
+++ b/roles/common/tasks/logging.yml
@@ -7,11 +7,36 @@
- logcheck-database
- logrotate
+- name: Configure rsyslog
+ copy: src=etc/rsyslog.conf
+ dest=/etc/rsyslog.conf
+ owner=root group=root
+ mode=0644
+ register: r1
+ notify:
+ - Restart rsyslog
+ tags:
+ - syslog
+
+- name: Configure postfix's custom rsyslog rules
+ template: src=etc/rsyslog.d/postfix.conf.j2
+ dest=/etc/rsyslog.d/postfix.conf
+ owner=root group=root
+ mode=0644
+ register: r2
+ notify:
+ - Restart rsyslog
+ tags:
+ - syslog
+
- name: Start rsyslog
service: name=rsyslog state=started
+ when: not (r1.changed or r2.changed)
tags:
- syslog
+- meta: flush_handlers
+
- name: Configure logcheck
copy: src=etc/logcheck/{{ item }}
dest=/etc/logcheck/{{ item }}
@@ -30,7 +55,7 @@
- name: Minimal logging policy (1)
lineinfile: dest=/etc/logrotate.d/rsyslog
- regexp="^/var/log/mail.(log|info)$"
+ regexp="^/var/log/mail\\.(log|info|sasl)$"
state=absent
- name: Minimal logging policy (2)
@@ -40,7 +65,3 @@
mode=0644
tags:
- logrotate
-
-# TODO: We also have specialized per-role logcheck rulesets, per-role
-# logrotate configuration (/etc/logrotate.d), and per-role rsyslog
-# configuration (/etc/rsyslog.d).