{"id":55998,"date":"2025-08-14T11:14:37","date_gmt":"2025-08-14T03:14:37","guid":{"rendered":"https:\/\/www.wsisp.com\/helps\/55998.html"},"modified":"2025-08-14T11:14:37","modified_gmt":"2025-08-14T03:14:37","slug":"%e3%80%90%e9%9d%a2%e8%af%95%e7%b2%be%e9%80%89%e3%80%9140%e9%81%93linux%e6%97%a5%e5%bf%97%e9%ab%98%e9%a2%91%e9%a2%98%e6%95%b4%e7%90%86%e9%99%84%e7%ad%94%e6%a1%88%e8%83%8c%e8%af%b5%e7%89%88","status":"publish","type":"post","link":"https:\/\/www.wsisp.com\/helps\/55998.html","title":{"rendered":"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248)"},"content":{"rendered":"<p>&#x1f345;\u5173\u6ce8\u3010\u58a8\u5c9a\u521b\u5ba2\u3011&#xff0c;\u56de\u590d\u3010\u6bd5\u8bbe\u3011&#xff0c;\u8d60\u9001\u514d\u8d39\u6bd5\u8bbe\u8d44\u6e90&#xff0c;\u5177\u4f53\u8054\u7cfb\u65b9\u5f0f\u89c1\u6587\u672b&#x1f345;<\/p>\n<h4>1.\u7b80\u8ff0Linux \u6709\u54ea\u4e9b\u7cfb\u7edf\u65e5\u5fd7\u6587\u4ef6?<\/h4>\n<p>Linux \u7cfb\u7edf\u4e2d\u6709\u591a\u79cd\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u5b83\u4eec\u8bb0\u5f55\u4e86\u7cfb\u7edf\u7684\u4e0d\u540c\u65b9\u9762\u7684\u4fe1\u606f&#xff0c;\u5e2e\u52a9\u7cfb\u7edf\u7ba1\u7406\u5458\u548c\u5f00\u53d1\u4eba\u5458\u4e86\u89e3\u7cfb\u7edf\u72b6\u6001\u548c\u8bca\u65ad\u95ee\u9898\u3002\u4ee5\u4e0b\u662f\u4e00\u4e9b\u5e38\u89c1\u7684\u7cfb\u7edf\u65e5\u5fd7\u6587\u4ef6&#xff1a;<\/p>\n<li>\n<p>\/var\/log\/messages&#xff1a;\u8fd9\u662f\u6700\u5e38\u89c1\u7684\u65e5\u5fd7\u6587\u4ef6\u4e4b\u4e00&#xff0c;\u7528\u4e8e\u5b58\u50a8\u5168\u5c40\u7cfb\u7edf\u6d88\u606f&#xff0c;\u5305\u62ec\u542f\u52a8\u4fe1\u606f\u3001\u7cfb\u7edf\u9519\u8bef\u3001\u786c\u4ef6\u9519\u8bef\u7b49\u3002\u5b83\u5bf9\u4e8e\u8bca\u65ad\u7cfb\u7edf\u95ee\u9898\u975e\u5e38\u6709\u7528\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/auth.log&#xff1a;\u8fd9\u4e2a\u65e5\u5fd7\u6587\u4ef6\u4e13\u95e8\u7528\u4e8e\u8bb0\u5f55\u8ba4\u8bc1\u65e5\u5fd7&#xff0c;\u6bd4\u5982\u7528\u6237\u767b\u5f55\u3001sudo \u547d\u4ee4\u7684\u4f7f\u7528\u7b49\u3002\u5728 Debian \u57fa\u7840\u7684\u7cfb\u7edf\u4e2d&#xff0c;\u8fd9\u4e2a\u6587\u4ef6\u975e\u5e38\u91cd\u8981&#xff0c;\u7528\u4e8e\u8ffd\u8e2a\u7cfb\u7edf\u8bbf\u95ee\u548c\u5b89\u5168\u4e8b\u4ef6\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/secure&#xff1a;\u5728\u57fa\u4e8e Red Hat \u7684\u7cfb\u7edf\u4e2d&#xff08;\u5982 CentOS\u3001Fedora&#xff09;&#xff0c;\u8fd9\u4e2a\u6587\u4ef6\u7684\u529f\u80fd\u4e0e \/var\/log\/auth.log \u7c7b\u4f3c&#xff0c;\u7528\u4e8e\u5b58\u50a8\u8ba4\u8bc1\u65e5\u5fd7\u548c\u5b89\u5168\u76f8\u5173\u7684\u4fe1\u606f\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/syslog&#xff1a;\u8fd9\u4e2a\u6587\u4ef6\u5305\u542b\u4e86\u7cfb\u7edf\u9664\u4e86\u4e0a\u8ff0\u5185\u5bb9\u4e4b\u5916\u7684\u5176\u4ed6\u6d88\u606f\u3002\u4e0d\u540c\u7a0b\u5e8f\u548c\u670d\u52a1\u7684\u65e5\u5fd7\u4fe1\u606f\u90fd\u53ef\u80fd\u88ab\u8bb0\u5f55\u5728\u8fd9\u91cc&#xff0c;\u5177\u4f53\u53d6\u51b3\u4e8e\u7cfb\u7edf\u7684\u914d\u7f6e\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/boot.log&#xff1a;\u6b64\u65e5\u5fd7\u6587\u4ef6\u5305\u542b\u7cfb\u7edf\u542f\u52a8\u8fc7\u7a0b\u4e2d\u7684\u6d88\u606f&#xff0c;\u53ef\u4ee5\u5e2e\u52a9\u8bca\u65ad\u542f\u52a8\u8fc7\u7a0b\u4e2d\u7684\u95ee\u9898\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/dmesg&#xff1a;\u6b64\u6587\u4ef6\u5305\u542b\u5185\u6838\u4ea7\u751f\u7684\u6d88\u606f&#xff0c;\u5982\u786c\u4ef6\u9a71\u52a8\u548c\u63a5\u53e3\u4fe1\u606f&#xff0c;\u975e\u5e38\u91cd\u8981&#xff0c;\u7528\u4e8e\u8bca\u65ad\u786c\u4ef6\u76f8\u5173\u7684\u95ee\u9898\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/kern.log&#xff1a;\u5305\u542b\u5185\u6838\u4ea7\u751f\u7684\u6d88\u606f&#xff0c;\u4e3b\u8981\u7528\u4e8e\u8bca\u65ad\u548c\u8bb0\u5f55\u4e0e\u5185\u6838\u76f8\u5173\u7684\u4e8b\u4ef6\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/cron.log&#xff1a;\u8bb0\u5f55\u4e86cron \u5b88\u62a4\u8fdb\u7a0b\u7684\u65e5\u5fd7\u4fe1\u606f&#xff0c;\u5305\u62ec\u8ba1\u5212\u4efb\u52a1\u7684\u6267\u884c\u60c5\u51b5\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/mail.log&#xff1a;\u7528\u4e8e\u8bb0\u5f55\u90ae\u4ef6\u670d\u52a1\u5668\u7684\u65e5\u5fd7\u4fe1\u606f&#xff0c;\u5982\u53d1\u9001\u548c\u63a5\u6536\u90ae\u4ef6\u7684\u8bb0\u5f55\u3002<\/p>\n<\/li>\n<li>\n<p>\/var\/log\/apache2\/access.log \u548c \/var\/log\/apache2\/error.log&#xff08;\u5bf9\u4e8e Apache Web \u670d\u52a1\u5668&#xff09;\u6216\u8005 \/var\/log\/nginx\/access.log \u548c \/var\/log\/nginx\/error.log&#xff08;\u5bf9\u4e8e Nginx Web \u670d\u52a1\u5668&#xff09;&#xff1a;\u8fd9\u4e9b\u65e5\u5fd7\u6587\u4ef6\u5206\u522b\u8bb0\u5f55\u4e86 Web \u670d\u52a1\u5668\u7684\u8bbf\u95ee\u65e5\u5fd7\u548c\u9519\u8bef\u65e5\u5fd7\u3002<\/p>\n<\/li>\n<p>\u8fd9\u4e9b\u65e5\u5fd7\u6587\u4ef6\u662f\u7cfb\u7edf\u7ba1\u7406\u5458\u65e5\u5e38\u68c0\u67e5\u7684\u91cd\u8981\u8d44\u6e90&#xff0c;\u901a\u8fc7\u5b83\u4eec\u53ef\u4ee5\u76d1\u63a7\u7cfb\u7edf\u5065\u5eb7\u72b6\u51b5\u3001\u8bca\u65ad\u95ee\u9898\u4ee5\u53ca\u8fdb\u884c\u5b89\u5168\u5ba1\u8ba1\u3002\u4e0d\u540c\u7684\u53d1\u884c\u7248\u53ef\u80fd\u4f1a\u6709\u6240\u5dee\u5f02&#xff0c;\u4f46\u5927\u4f53\u4e0a\u90fd\u5305\u542b\u8fd9\u4e9b\u65e5\u5fd7\u6587\u4ef6\u6216\u7c7b\u4f3c\u7684\u529f\u80fd\u6587\u4ef6\u3002<\/p>\n<h4>2.\u5982\u4f55\u52a8\u6001\u76d1\u542cLinux\u65e5\u5fd7 &#xff1f;<\/h4>\n<p>\u52a8\u6001\u76d1\u542c Linux \u65e5\u5fd7\u6587\u4ef6&#xff0c;\u901a\u5e38\u6307\u7684\u662f\u5b9e\u65f6\u67e5\u770b\u65e5\u5fd7\u6587\u4ef6\u4e2d\u65b0\u589e\u7684\u5185\u5bb9\u3002\u8fd9\u5bf9\u4e8e\u76d1\u63a7\u7cfb\u7edf\u6d3b\u52a8\u3001\u8bca\u65ad\u95ee\u9898\u7b49\u573a\u666f\u975e\u5e38\u6709\u7528\u3002\u6709\u51e0\u79cd\u5e38\u7528\u7684\u65b9\u6cd5\u53ef\u4ee5\u5b9e\u73b0\u52a8\u6001\u76d1\u542c&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 tail \u547d\u4ee4<\/h5>\n<p>tail \u547d\u4ee4\u53ef\u4ee5\u7528\u6765\u67e5\u770b\u6587\u4ef6\u7684\u6700\u540e\u51e0\u884c\u5185\u5bb9\u3002\u5f53\u4e0e -f \u53c2\u6570\u4e00\u8d77\u4f7f\u7528\u65f6&#xff0c;tail -f \u4f1a\u6301\u7eed\u76d1\u89c6\u6307\u5b9a\u7684\u6587\u4ef6&#xff0c;\u5f53\u6587\u4ef6\u589e\u957f\u65f6&#xff0c;\u65b0\u6dfb\u52a0\u7684\u5185\u5bb9\u4f1a\u5b9e\u65f6\u663e\u793a\u51fa\u6765\u3002\u8fd9\u662f\u6700\u5e38\u89c1\u548c\u7b80\u5355\u7684\u52a8\u6001\u76d1\u542c\u65e5\u5fd7\u6587\u4ef6\u7684\u65b9\u6cd5\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u52a8\u6001\u76d1\u542c\u7cfb\u7edf\u6d88\u606f\u65e5\u5fd7&#xff1a;<\/p>\n<p><span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/messages<\/p>\n<h5>2. \u4f7f\u7528 less \u547d\u4ee4<\/h5>\n<p>less \u547d\u4ee4\u4e5f\u53ef\u4ee5\u7528\u4e8e\u52a8\u6001\u76d1\u542c\u65e5\u5fd7\u3002\u9996\u5148\u4f7f\u7528 less \u6253\u5f00\u4e00\u4e2a\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u7136\u540e\u6309\u4e0b Shift&#043;F&#xff0c;less \u4f1a\u8fdb\u5165\u7c7b\u4f3c tail -f \u7684\u76d1\u89c6\u6a21\u5f0f&#xff0c;\u5b9e\u65f6\u663e\u793a\u65e5\u5fd7\u6587\u4ef6\u7684\u65b0\u5185\u5bb9\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u4f7f\u7528 less \u76d1\u542c\u5b89\u5168\u65e5\u5fd7&#xff1a;<\/p>\n<p><span class=\"token function\">less<\/span> &#043;F \/var\/log\/auth.log<\/p>\n<p>\u6309\u4e0b Ctrl&#043;C \u53ef\u4ee5\u9000\u51fa\u76d1\u89c6\u6a21\u5f0f&#xff0c;\u56de\u5230\u6b63\u5e38\u7684 less \u6d4f\u89c8\u6a21\u5f0f\u3002<\/p>\n<h5>3. \u4f7f\u7528 multitail \u547d\u4ee4<\/h5>\n<p>multitail \u662f\u4e00\u4e2a\u5f3a\u5927\u7684\u5de5\u5177&#xff0c;\u5b83\u4e0d\u4ec5\u53ef\u4ee5\u52a8\u6001\u76d1\u542c\u591a\u4e2a\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u8fd8\u53ef\u4ee5\u5728\u4e00\u4e2a\u7a97\u53e3\u4e2d\u4ee5\u5206\u5c4f\u7684\u5f62\u5f0f\u663e\u793a&#xff0c;\u8fd8\u652f\u6301\u65e5\u5fd7\u6587\u4ef6\u7684\u5f69\u8272\u663e\u793a&#xff0c;\u4f7f\u5f97\u65e5\u5fd7\u7684\u9605\u8bfb\u66f4\u52a0\u76f4\u89c2\u3002<\/p>\n<p>\u5b89\u88c5 multitail&#xff08;\u5982\u679c\u7cfb\u7edf\u4e2d\u6ca1\u6709\u9884\u88c5\u7684\u8bdd&#xff09;&#xff1a;<\/p>\n<p><span class=\"token function\">sudo<\/span> <span class=\"token function\">apt-get<\/span> <span class=\"token function\">install<\/span> multitail  <span class=\"token comment\"># Debian\/Ubuntu<\/span><br \/>\n<span class=\"token function\">sudo<\/span> yum <span class=\"token function\">install<\/span> multitail      <span class=\"token comment\"># CentOS\/RedHat<\/span><\/p>\n<p>\u52a8\u6001\u76d1\u542c\u591a\u4e2a\u65e5\u5fd7\u6587\u4ef6&#xff1a;<\/p>\n<p>multitail \/var\/log\/apache2\/access.log \/var\/log\/apache2\/error.log<\/p>\n<h5>4. \u4f7f\u7528 journalctl \u547d\u4ee4<\/h5>\n<p>\u5bf9\u4e8e\u4f7f\u7528 systemd \u7684\u7cfb\u7edf&#xff0c;journalctl \u662f\u67e5\u770b\u548c\u76d1\u63a7\u7cfb\u7edf\u65e5\u5fd7\u7684\u5f3a\u5927\u5de5\u5177\u3002\u4f7f\u7528 -f \u53c2\u6570&#xff0c;\u53ef\u4ee5\u52a8\u6001\u76d1\u542c\u7cfb\u7edf\u7684\u65e5\u5fd7\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u52a8\u6001\u76d1\u542c\u7cfb\u7edf\u65e5\u5fd7&#xff1a;<\/p>\n<p>journalctl <span class=\"token parameter variable\">-f<\/span><\/p>\n<p>journalctl \u63d0\u4f9b\u4e86\u8bb8\u591a\u5f3a\u5927\u7684\u8fc7\u6ee4\u9009\u9879&#xff0c;\u53ef\u4ee5\u6839\u636e\u65f6\u95f4\u3001\u670d\u52a1\u3001\u4f18\u5148\u7ea7\u7b49\u591a\u79cd\u6761\u4ef6\u7b5b\u9009\u65e5\u5fd7\u3002<\/p>\n<p>\u8fd9\u4e9b\u65b9\u6cd5\u5404\u6709\u4f18\u52bf&#xff0c;\u53ef\u4ee5\u6839\u636e\u4e0d\u540c\u7684\u9700\u6c42\u548c\u573a\u666f\u9009\u62e9\u5408\u9002\u7684\u5de5\u5177\u6765\u52a8\u6001\u76d1\u542c Linux \u7cfb\u7edf\u7684\u65e5\u5fd7\u6587\u4ef6\u3002<\/p>\n<h4>3.\u5982\u4f55\u5e26\u5173\u952e\u8bcd\u67e5\u8be2Linux\u65e5\u5fd7\u6587\u4ef6 &#xff1f;<\/h4>\n<p>\u67e5\u8be2 Linux \u65e5\u5fd7\u6587\u4ef6\u5e76\u8fc7\u6ee4\u51fa\u542b\u6709\u7279\u5b9a\u5173\u952e\u8bcd\u7684\u884c\u662f\u4e00\u79cd\u5e38\u89c1\u7684\u65e5\u5fd7\u5206\u6790\u6280\u672f&#xff0c;\u8fd9\u6709\u52a9\u4e8e\u5feb\u901f\u5b9a\u4f4d\u5230\u95ee\u9898\u6216\u8005\u7279\u5b9a\u4e8b\u4ef6\u3002\u4ee5\u4e0b\u662f\u4e00\u4e9b\u5b9e\u7528\u7684\u65b9\u6cd5\u6765\u5b9e\u73b0\u8fd9\u4e00\u76ee\u6807&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 grep \u547d\u4ee4<\/h5>\n<p>grep \u662f\u6700\u57fa\u672c\u4e5f\u662f\u6700\u5f3a\u5927\u7684\u6587\u672c\u641c\u7d22\u5de5\u5177\u4e4b\u4e00&#xff0c;\u5b83\u53ef\u4ee5\u641c\u7d22\u5305\u542b\u6307\u5b9a\u6a21\u5f0f&#xff08;\u53ef\u4ee5\u662f\u5b57\u7b26\u4e32\u6216\u6b63\u5219\u8868\u8fbe\u5f0f&#xff09;\u7684\u884c\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u641c\u7d22 \/var\/log\/syslog \u6587\u4ef6\u4e2d\u5305\u542b\u5173\u952e\u8bcd \u201cerror\u201d \u7684\u884c&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token string\">&#034;error&#034;<\/span> \/var\/log\/syslog<\/p>\n<p>\u5982\u679c\u4f60\u60f3\u540c\u65f6\u67e5\u770b\u5339\u914d\u884c\u7684\u4e0a\u4e0b\u6587&#xff08;\u4f8b\u5982&#xff0c;\u663e\u793a\u6bcf\u4e2a\u5339\u914d\u884c\u524d\u540e\u54042\u884c&#xff09;&#xff0c;\u53ef\u4ee5\u4f7f\u7528 -C&#xff08;\u4e0a\u4e0b\u6587&#xff09;\u9009\u9879&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token parameter variable\">-C<\/span> <span class=\"token number\">2<\/span> <span class=\"token string\">&#034;error&#034;<\/span> \/var\/log\/syslog<\/p>\n<h5>2. \u4f7f\u7528 awk \u547d\u4ee4<\/h5>\n<p>awk \u662f\u4e00\u4e2a\u5f3a\u5927\u7684\u6587\u672c\u5904\u7406\u5de5\u5177&#xff0c;\u5b83\u4e0d\u4ec5\u53ef\u4ee5\u7528\u4e8e\u641c\u7d22\u6587\u672c&#xff0c;\u8fd8\u53ef\u4ee5\u8fdb\u884c\u66f4\u590d\u6742\u7684\u6587\u672c\u5904\u7406\u548c\u5206\u6790\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u641c\u7d22 \/var\/log\/auth.log \u6587\u4ef6\u4e2d\u5305\u542b \u201cfailed\u201d \u7684\u884c&#xff1a;<\/p>\n<p><span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;\/failed\/&#039;<\/span> \/var\/log\/auth.log<\/p>\n<h5>3. \u4f7f\u7528 sed \u547d\u4ee4<\/h5>\n<p>\u867d\u7136 sed \u4e3b\u8981\u7528\u4e8e\u6587\u672c\u66ff\u6362&#xff0c;\u4f46\u5b83\u4e5f\u53ef\u4ee5\u7528\u6765\u8fc7\u6ee4\u542b\u6709\u7279\u5b9a\u6a21\u5f0f\u7684\u884c\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u6253\u5370 \/var\/log\/dmesg \u4e2d\u5305\u542b \u201cusb\u201d \u7684\u6240\u6709\u884c&#xff1a;<\/p>\n<p><span class=\"token function\">sed<\/span> <span class=\"token parameter variable\">-n<\/span> <span class=\"token string\">&#039;\/usb\/p&#039;<\/span> \/var\/log\/dmesg<\/p>\n<h5>4. \u4f7f\u7528 less \u547d\u4ee4<\/h5>\n<p>less \u547d\u4ee4\u63d0\u4f9b\u4e86\u4e00\u4e2a\u67e5\u770b\u6587\u4ef6\u5185\u5bb9\u7684\u63a5\u53e3&#xff0c;\u4f60\u53ef\u4ee5\u5728\u5176\u4e2d\u641c\u7d22\u5b57\u7b26\u4e32\u3002<\/p>\n<p>\u6253\u5f00\u6587\u4ef6\u540e&#xff0c;\u4f60\u53ef\u4ee5\u6309 \/ \u952e\u540e\u8f93\u5165\u4f60\u8981\u641c\u7d22\u7684\u5173\u952e\u8bcd&#xff0c;\u7136\u540e\u6309\u56de\u8f66\u952e&#xff1a;<\/p>\n<p><span class=\"token function\">less<\/span> \/var\/log\/messages<\/p>\n<p>\u7136\u540e\u8f93\u5165&#xff1a;<\/p>\n<p>\/error<\/p>\n<p>\u8fd9\u4f1a\u641c\u7d22\u5e76\u9ad8\u4eae\u663e\u793a\u6240\u6709\u5305\u542b \u201cerror\u201d \u7684\u884c\u3002<\/p>\n<h5>5. \u7ed3\u5408\u4f7f\u7528 zgrep \u547d\u4ee4\u641c\u7d22\u538b\u7f29\u7684\u65e5\u5fd7\u6587\u4ef6<\/h5>\n<p>\u8bb8\u591a Linux \u7cfb\u7edf\u4f1a\u538b\u7f29\u65e7\u7684\u65e5\u5fd7\u6587\u4ef6\u4ee5\u8282\u7701\u7a7a\u95f4&#xff0c;\u8fd9\u4e9b\u6587\u4ef6\u901a\u5e38\u4ee5 .gz \u7ed3\u5c3e\u3002zgrep \u547d\u4ee4\u53ef\u4ee5\u5728\u8fd9\u4e9b\u538b\u7f29\u6587\u4ef6\u4e2d\u641c\u7d22\u6587\u672c&#xff0c;\u65e0\u9700\u5148\u89e3\u538b\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u641c\u7d22\u6240\u6709\u538b\u7f29\u7684 .log.gz \u6587\u4ef6\u4e2d\u5305\u542b \u201cwarning\u201d \u7684\u884c&#xff1a;<\/p>\n<p>zgrep <span class=\"token string\">&#034;warning&#034;<\/span> \/var\/log\/*.gz<\/p>\n<p>\u8fd9\u4e9b\u65b9\u6cd5\u53ef\u4ee5\u5e2e\u52a9\u4f60\u6709\u6548\u5730\u5e26\u5173\u952e\u8bcd\u67e5\u8be2 Linux \u65e5\u5fd7\u6587\u4ef6&#xff0c;\u5feb\u901f\u5b9a\u4f4d\u611f\u5174\u8da3\u7684\u4fe1\u606f\u6216\u95ee\u9898\u3002<\/p>\n<h4>4.\u5982\u4f55\u683c\u5f0f\u5316\u8f93\u51fa\u663e\u793aLinux\u65e5\u5fd7\u6587\u4ef6 &#xff1f;<\/h4>\n<p>\u683c\u5f0f\u5316\u8f93\u51fa\u663e\u793a Linux \u65e5\u5fd7\u6587\u4ef6\u53ef\u4ee5\u8ba9\u65e5\u5fd7\u5185\u5bb9\u66f4\u52a0\u6613\u4e8e\u9605\u8bfb\u548c\u7406\u89e3&#xff0c;\u7279\u522b\u662f\u5f53\u4f60\u9700\u8981\u4ece\u5927\u91cf\u65e5\u5fd7\u6570\u636e\u4e2d\u63d0\u53d6\u5173\u952e\u4fe1\u606f\u65f6\u3002\u8fd9\u91cc\u6709\u51e0\u79cd\u65b9\u6cd5\u53ef\u4ee5\u5b9e\u73b0\u683c\u5f0f\u5316\u8f93\u51fa&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 awk \u547d\u4ee4<\/h5>\n<p>awk \u662f\u4e00\u4e2a\u975e\u5e38\u5f3a\u5927\u7684\u6587\u672c\u5904\u7406\u5de5\u5177&#xff0c;\u5b83\u53ef\u4ee5\u7528\u6765\u683c\u5f0f\u5316\u65e5\u5fd7\u6587\u4ef6\u7684\u8f93\u51fa\u3002\u4f60\u53ef\u4ee5\u4f7f\u7528 awk \u7684\u6253\u5370&#xff08;print&#xff09;\u529f\u80fd\u6765\u9009\u62e9\u548c\u91cd\u65b0\u6392\u5217\u65e5\u5fd7\u6587\u4ef6\u4e2d\u7684\u5b57\u6bb5\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u5982\u679c\u4f60\u60f3\u683c\u5f0f\u5316 \/var\/log\/syslog \u6587\u4ef6\u7684\u8f93\u51fa&#xff0c;\u53ea\u663e\u793a\u65e5\u671f\u3001\u65f6\u95f4\u548c\u65e5\u5fd7\u6d88\u606f&#xff0c;\u53ef\u4ee5\u8fd9\u6837\u505a&#xff1a;<\/p>\n<p><span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $1, $2, $3, $5, $6, $0}&#039;<\/span> \/var\/log\/syslog<\/p>\n<p>\u8fd9\u91cc&#xff0c;$1, $2, $3, $5, $6 \u8868\u793a\u65e5\u5fd7\u884c\u4e2d\u7684\u5b57\u6bb5&#xff0c;$0 \u8868\u793a\u6574\u4e2a\u884c\u3002\u4f60\u53ef\u4ee5\u6839\u636e\u65e5\u5fd7\u7684\u683c\u5f0f\u8c03\u6574\u5b57\u6bb5\u7f16\u53f7\u3002<\/p>\n<h5>2. \u4f7f\u7528 cut \u547d\u4ee4<\/h5>\n<p>cut \u547d\u4ee4\u53ef\u4ee5\u4ece\u6bcf\u884c\u4e2d\u526a\u5207\u51fa\u6587\u672c\u6bb5&#xff0c;\u975e\u5e38\u9002\u5408\u7528\u4e8e\u4ece\u56fa\u5b9a\u683c\u5f0f\u7684\u6587\u672c&#xff08;\u5982\u65e5\u5fd7\u6587\u4ef6&#xff09;\u4e2d\u63d0\u53d6\u5217\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u5982\u679c\u4f60\u53ea\u5bf9 \/var\/log\/auth.log \u4e2d\u7684\u65e5\u671f\u3001\u65f6\u95f4\u548c\u4e8b\u4ef6\u6d88\u606f\u611f\u5174\u8da3&#xff0c;\u53ef\u4ee5\u4f7f\u7528&#xff1a;<\/p>\n<p><span class=\"token function\">cut<\/span> -d<span class=\"token string\">&#039; &#039;<\/span> -f1-3,6- \/var\/log\/auth.log<\/p>\n<p>\u8fd9\u91cc&#xff0c;-d&#039; &#039; \u5b9a\u4e49\u7a7a\u683c\u4e3a\u5b57\u6bb5\u5206\u9694\u7b26&#xff0c;-f1-3,6- \u9009\u62e9\u4e86\u7b2c1\u5230\u7b2c3\u4e2a\u5b57\u6bb5&#xff0c;\u4ee5\u53ca\u4ece\u7b2c6\u4e2a\u5b57\u6bb5\u5230\u884c\u5c3e\u7684\u6240\u6709\u5b57\u6bb5\u3002<\/p>\n<h5>3. \u4f7f\u7528 grep \u547d\u4ee4\u4e0e\u6b63\u5219\u8868\u8fbe\u5f0f<\/h5>\n<p>\u7ed3\u5408\u4f7f\u7528 grep \u547d\u4ee4\u548c\u6b63\u5219\u8868\u8fbe\u5f0f\u53ef\u4ee5\u5e2e\u52a9\u4f60\u8fc7\u6ee4\u548c\u663e\u793a\u5305\u542b\u7279\u5b9a\u6a21\u5f0f\u7684\u65e5\u5fd7\u884c\u3002\u5982\u679c\u4f60\u60f3\u8fdb\u4e00\u6b65\u683c\u5f0f\u5316\u8fd9\u4e9b\u884c\u7684\u663e\u793a&#xff0c;\u53ef\u4ee5\u5c06 grep \u7684\u8f93\u51fa\u901a\u8fc7\u7ba1\u9053\u4f20\u9012\u7ed9 awk\u3001cut \u6216\u5176\u4ed6\u6587\u672c\u5904\u7406\u5de5\u5177\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u8fc7\u6ee4 \/var\/log\/messages \u4e2d\u7684\u9519\u8bef\u65e5\u5fd7&#xff0c;\u5e76\u683c\u5f0f\u5316\u8f93\u51fa&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token string\">&#034;error&#034;<\/span> \/var\/log\/messages <span class=\"token operator\">|<\/span> <span class=\"token function\">cut<\/span> -d<span class=\"token string\">&#039; &#039;<\/span> -f1-3,5-<\/p>\n<h5>4. \u4f7f\u7528 sed \u547d\u4ee4<\/h5>\n<p>sed \u662f\u53e6\u4e00\u4e2a\u6587\u672c\u5904\u7406\u5de5\u5177&#xff0c;\u53ef\u4ee5\u7528\u4e8e\u683c\u5f0f\u5316\u8f93\u51fa\u65e5\u5fd7\u6587\u4ef6\u3002\u901a\u8fc7\u4f7f\u7528 sed \u7684\u66ff\u6362\u529f\u80fd&#xff0c;\u4f60\u53ef\u4ee5\u9ad8\u4eae\u6216\u66ff\u6362\u65e5\u5fd7\u6587\u4ef6\u4e2d\u7684\u7279\u5b9a\u6587\u672c&#xff0c;\u4f7f\u8f93\u51fa\u66f4\u6613\u4e8e\u9605\u8bfb\u3002<\/p>\n<p>\u4f8b\u5982&#xff0c;\u9ad8\u4eae\u663e\u793a \/var\/log\/dmesg \u4e2d\u5305\u542b \u201cerror\u201d \u7684\u6587\u672c&#xff1a;<\/p>\n<p><span class=\"token function\">sed<\/span> <span class=\"token string\">&#039;s\/error\/\\\\x1b[31m&amp;\\\\x1b[0m\/g&#039;<\/span> \/var\/log\/dmesg<\/p>\n<p>\u8fd9\u91cc\u4f7f\u7528\u4e86 ANSI \u8f6c\u4e49\u5e8f\u5217\u6765\u5c06\u5339\u914d\u7684\u6587\u672c\u53d8\u4e3a\u7ea2\u8272\u3002<\/p>\n<h5>5. \u4f7f\u7528 journalctl \u547d\u4ee4<\/h5>\n<p>\u5bf9\u4e8e\u4f7f\u7528 systemd \u7684\u7cfb\u7edf&#xff0c;journalctl \u63d0\u4f9b\u4e86\u591a\u79cd\u683c\u5f0f\u5316\u8f93\u51fa\u9009\u9879\u3002\u4f8b\u5982&#xff0c;\u4f60\u53ef\u4ee5\u4f7f\u7528 -o \u9009\u9879\u6765\u6307\u5b9a\u8f93\u51fa\u683c\u5f0f&#xff0c;\u5982 JSON\u3002<\/p>\n<p>\u8f93\u51fa\u65e5\u5fd7\u4e3a JSON \u683c\u5f0f&#xff1a;<\/p>\n<p>journalctl <span class=\"token parameter variable\">-o<\/span> json-pretty<\/p>\n<p>\u8fd9\u5c06\u4ee5\u6613\u4e8e\u9605\u8bfb\u7684 JSON \u683c\u5f0f\u8f93\u51fa\u65e5\u5fd7&#xff0c;\u4fbf\u4e8e\u89e3\u6790\u548c\u5206\u6790\u3002<\/p>\n<p>\u901a\u8fc7\u8fd9\u4e9b\u65b9\u6cd5&#xff0c;\u4f60\u53ef\u4ee5\u6839\u636e\u9700\u8981\u9009\u62e9\u5408\u9002\u7684\u5de5\u5177\u548c\u547d\u4ee4\u6765\u683c\u5f0f\u5316\u8f93\u51fa Linux \u65e5\u5fd7\u6587\u4ef6&#xff0c;\u4f7f\u5176\u66f4\u52a0\u6e05\u6670\u548c\u6709\u7528\u3002<\/p>\n<h4>5.\u7b80\u8ff0\u5982\u4f55\u5c06\u547d\u4ee4\u7ec4\u5408\u6210\u7ba1\u9053&#xff0c;\u5b9e\u73b0\u5b9e\u65f6\u76d1\u63a7\u5e26\u6709\u5173\u952e\u5b57\u7684\u65e5\u5fd7&#xff1f;<\/h4>\n<p>\u5c06\u547d\u4ee4\u7ec4\u5408\u6210\u7ba1\u9053&#xff0c;\u4ee5\u5b9e\u73b0\u5b9e\u65f6\u76d1\u63a7\u5e26\u6709\u5173\u952e\u5b57\u7684\u65e5\u5fd7&#xff0c;\u662f\u4e00\u79cd\u9ad8\u6548\u7684\u65e5\u5fd7\u5206\u6790\u6280\u672f\u3002\u8fd9\u901a\u5e38\u6d89\u53ca\u5230\u4f7f\u7528 tail\u3001grep \u4ee5\u53ca\u5176\u4ed6\u6587\u672c\u5904\u7406\u547d\u4ee4\u7684\u7ec4\u5408\u3002\u4ee5\u4e0b\u662f\u4e00\u4e2a\u57fa\u672c\u7684\u6b65\u9aa4\u8bf4\u660e&#xff0c;\u4ee5\u53ca\u4e00\u4e2a\u5b9e\u9645\u7684\u4f8b\u5b50&#xff1a;<\/p>\n<h5>\u57fa\u672c\u6b65\u9aa4<\/h5>\n<li>\n<p>\u4f7f\u7528 tail -f&#xff1a;\u8fd9\u4e2a\u547d\u4ee4\u7528\u4e8e\u5b9e\u65f6\u76d1\u63a7\u65e5\u5fd7\u6587\u4ef6\u7684\u65b0\u589e\u5185\u5bb9\u3002-f \u53c2\u6570\u8ba9 tail \u547d\u4ee4\u6301\u7eed\u8fd0\u884c&#xff0c;\u52a8\u6001\u663e\u793a\u65e5\u5fd7\u6587\u4ef6\u7684\u6700\u65b0\u8ffd\u52a0\u5185\u5bb9\u3002<\/p>\n<\/li>\n<li>\n<p>\u914d\u5408 grep \u8fc7\u6ee4&#xff1a;\u901a\u8fc7\u7ba1\u9053 (|) \u5c06 tail -f \u7684\u8f93\u51fa\u4f20\u9012\u7ed9 grep \u547d\u4ee4&#xff0c;\u53ef\u4ee5\u5b9e\u65f6\u8fc7\u6ee4\u51fa\u5305\u542b\u7279\u5b9a\u5173\u952e\u5b57\u7684\u65e5\u5fd7\u884c\u3002<\/p>\n<\/li>\n<li>\n<p>&#xff08;\u53ef\u9009&#xff09;\u8fdb\u4e00\u6b65\u5904\u7406&#xff1a;\u5982\u679c\u9700\u8981&#xff0c;\u53ef\u4ee5\u5c06 grep \u7684\u8f93\u51fa\u518d\u901a\u8fc7\u7ba1\u9053\u4f20\u9012\u7ed9\u5176\u4ed6\u547d\u4ee4&#xff08;\u5982 awk, sed, cut \u7b49&#xff09;\u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406\u6216\u683c\u5f0f\u5316\u3002<\/p>\n<\/li>\n<h5>\u5b9e\u9645\u4f8b\u5b50<\/h5>\n<p>\u5047\u8bbe\u4f60\u60f3\u5b9e\u65f6\u76d1\u63a7 \/var\/log\/syslog \u6587\u4ef6&#xff0c;\u5bfb\u627e\u5305\u542b \u201cerror\u201d \u5173\u952e\u5b57\u7684\u65e5\u5fd7\u884c\u3002\u4f60\u53ef\u4ee5\u4f7f\u7528\u4ee5\u4e0b\u547d\u4ee4\u7ec4\u5408&#xff1a;<\/p>\n<p><span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">grep<\/span> <span class=\"token string\">&#034;error&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u4f1a\u6301\u7eed\u8fd0\u884c&#xff0c;\u5b9e\u65f6\u663e\u793a \/var\/log\/syslog \u6587\u4ef6\u4e2d\u65b0\u589e\u7684\u5305\u542b \u201cerror\u201d \u7684\u65e5\u5fd7\u884c\u3002<\/p>\n<h5>\u9ad8\u7ea7\u7528\u6cd5<\/h5>\n<ul>\n<li>\n<p>\u4f7f\u7528 egrep \u8fdb\u884c\u591a\u5173\u952e\u5b57\u8fc7\u6ee4&#xff1a;\u5982\u679c\u4f60\u60f3\u540c\u65f6\u76d1\u63a7\u591a\u4e2a\u5173\u952e\u5b57&#xff0c;\u53ef\u4ee5\u4f7f\u7528 egrep&#xff08;\u6216 grep -E&#xff09;&#xff0c;\u5e76\u901a\u8fc7\u7ba1\u9053\u7b26 (|) \u5728\u5173\u952e\u5b57\u4e4b\u95f4\u8fdb\u884c\u903b\u8f91\u201c\u6216\u201d\u64cd\u4f5c\u3002<\/p>\n<p> <span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">egrep<\/span> <span class=\"token string\">&#034;error|warning|critical&#034;<\/span>\n <\/li>\n<li>\n<p>\u5ffd\u7565\u5927\u5c0f\u5199&#xff1a;\u4f7f\u7528 grep \u7684 -i \u53c2\u6570\u53ef\u4ee5\u5ffd\u7565\u5173\u952e\u5b57\u7684\u5927\u5c0f\u5199\u3002<\/p>\n<p> <span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">grep<\/span> <span class=\"token parameter variable\">-i<\/span> <span class=\"token string\">&#034;error&#034;<\/span>\n <\/li>\n<li>\n<p>\u5f69\u8272\u9ad8\u4eae\u5173\u952e\u5b57&#xff1a;\u4f7f\u7528 grep \u7684 &#8211;color \u53c2\u6570\u53ef\u4ee5\u5c06\u5339\u914d\u7684\u5173\u952e\u5b57\u4ee5\u5f69\u8272\u9ad8\u4eae\u663e\u793a&#xff0c;\u4ece\u800c\u66f4\u5bb9\u6613\u5730\u4ece\u5927\u91cf\u6587\u672c\u4e2d\u8bc6\u522b\u51fa\u6765\u3002<\/p>\n<p> <span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">grep<\/span> <span class=\"token parameter variable\">&#8211;color<\/span> <span class=\"token string\">&#034;error&#034;<\/span>\n <\/li>\n<\/ul>\n<p>\u901a\u8fc7\u8fd9\u79cd\u65b9\u5f0f&#xff0c;\u4f60\u53ef\u4ee5\u7075\u6d3b\u5730\u7ec4\u5408\u4e0d\u540c\u7684\u547d\u4ee4&#xff0c;\u6839\u636e\u81ea\u5df1\u7684\u9700\u6c42\u5b9e\u65f6\u76d1\u63a7\u548c\u5206\u6790\u65e5\u5fd7\u6587\u4ef6\u4e2d\u7684\u7279\u5b9a\u4fe1\u606f\u3002<\/p>\n<h4>6.\u89e3\u91ca\u5982\u4f55\u5b9e\u73b0\u65e5\u5fd7\u52a8\u6001\u622a\u53d6 &#xff1f;<\/h4>\n<p>\u65e5\u5fd7\u52a8\u6001\u622a\u53d6\u901a\u5e38\u6307\u7684\u662f\u5728\u65e5\u5fd7\u6587\u4ef6\u751f\u6210\u65f6&#xff0c;\u5b9e\u65f6\u63d0\u53d6\u5176\u4e2d\u7684\u7279\u5b9a\u4fe1\u606f\u6216\u6839\u636e\u4e00\u5b9a\u7684\u6761\u4ef6\u5bf9\u5176\u8fdb\u884c\u7b5b\u9009\u3002\u8fd9\u5728\u76d1\u63a7\u7cfb\u7edf\u72b6\u6001\u3001\u5b89\u5168\u5ba1\u8ba1\u6216\u95ee\u9898\u8bca\u65ad\u65f6\u7279\u522b\u6709\u7528\u3002\u5b9e\u73b0\u65e5\u5fd7\u52a8\u6001\u622a\u53d6\u53ef\u4ee5\u901a\u8fc7\u591a\u79cd\u65b9\u5f0f&#xff0c;\u8fd9\u91cc\u5c06\u4ecb\u7ecd\u51e0\u79cd\u5e38\u7528\u7684\u65b9\u6cd5&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 tail \u548c grep \u7684\u7ec4\u5408<\/h5>\n<p>\u8fd9\u662f\u6700\u7b80\u5355\u76f4\u63a5\u7684\u65b9\u5f0f&#xff0c;\u9002\u7528\u4e8e\u5feb\u901f\u76d1\u63a7\u548c\u7b5b\u9009\u7279\u5b9a\u5173\u952e\u8bcd\u7684\u65e5\u5fd7\u6761\u76ee\u3002<\/p>\n<p><span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">grep<\/span> <span class=\"token string\">&#034;\u7279\u5b9a\u5173\u952e\u8bcd&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u4f1a\u5b9e\u65f6\u663e\u793a \/var\/log\/syslog \u4e2d\u5305\u542b\u201c\u7279\u5b9a\u5173\u952e\u8bcd\u201d\u7684\u884c\u3002\u4f60\u53ef\u4ee5\u6839\u636e\u9700\u8981\u66f4\u6362\u65e5\u5fd7\u6587\u4ef6\u8def\u5f84\u548c\u5173\u952e\u8bcd\u3002<\/p>\n<h5>2. \u4f7f\u7528 awk \u5b9e\u73b0\u590d\u6742\u7684\u6587\u672c\u5904\u7406<\/h5>\n<p>\u5f53\u9700\u8981\u57fa\u4e8e\u66f4\u590d\u6742\u7684\u903b\u8f91\u8fdb\u884c\u65e5\u5fd7\u622a\u53d6\u65f6&#xff0c;awk \u662f\u4e00\u4e2a\u975e\u5e38\u5f3a\u5927\u7684\u5de5\u5177\u3002\u5b83\u4e0d\u4ec5\u53ef\u4ee5\u57fa\u4e8e\u6a21\u5f0f\u5339\u914d\u8fdb\u884c\u6587\u672c\u7b5b\u9009&#xff0c;\u8fd8\u53ef\u4ee5\u8fdb\u884c\u6587\u672c\u5206\u6790\u548c\u5904\u7406\u3002<\/p>\n<p><span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;\/\u9519\u8bef\u6a21\u5f0f1|\u9519\u8bef\u6a21\u5f0f2\/ {print $0}&#039;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u4f1a\u5b9e\u65f6\u7b5b\u9009\u51fa\u5305\u542b\u201c\u9519\u8bef\u6a21\u5f0f1\u201d\u6216\u201c\u9519\u8bef\u6a21\u5f0f2\u201d\u7684\u65e5\u5fd7\u884c\u3002<\/p>\n<h5>3. \u7ed3\u5408\u4f7f\u7528 sed \u8fdb\u884c\u6d41\u7f16\u8f91<\/h5>\n<p>sed \u662f\u6d41\u7f16\u8f91\u5668&#xff0c;\u53ef\u4ee5\u7528\u6765\u5b9e\u73b0\u66f4\u7075\u6d3b\u7684\u6587\u672c\u7f16\u8f91\u548c\u5904\u7406\u4efb\u52a1&#xff0c;\u5982\u66ff\u6362\u3001\u5220\u9664\u3001\u63d2\u5165\u7b49\u3002<\/p>\n<p><span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">sed<\/span> <span class=\"token parameter variable\">-n<\/span> <span class=\"token string\">&#039;\/\u6a21\u5f0f\/p&#039;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u5b9e\u65f6\u5730\u4ece \/var\/log\/syslog \u4e2d\u7b5b\u9009\u51fa\u5305\u542b\u67d0\u4e2a\u6a21\u5f0f\u7684\u884c\u3002<\/p>\n<h5>4. \u4f7f\u7528 multitail \u76d1\u63a7\u591a\u4e2a\u6587\u4ef6<\/h5>\n<p>multitail \u5141\u8bb8\u4f60\u5728\u4e00\u4e2a\u7ec8\u7aef\u7a97\u53e3\u4e2d\u540c\u65f6\u76d1\u63a7\u591a\u4e2a\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u8fd8\u53ef\u4ee5\u5bf9\u4e0d\u540c\u7684\u6587\u4ef6\u5e94\u7528\u4e0d\u540c\u7684\u8fc7\u6ee4\u89c4\u5219\u3002<\/p>\n<p>multitail <span class=\"token parameter variable\">-e<\/span> <span class=\"token string\">&#034;\u9519\u8bef\u6a21\u5f0f1&#034;<\/span> <span class=\"token parameter variable\">-l<\/span> <span class=\"token string\">&#034;tail -f \/var\/log\/syslog&#034;<\/span> <span class=\"token parameter variable\">-e<\/span> <span class=\"token string\">&#034;\u9519\u8bef\u6a21\u5f0f2&#034;<\/span> <span class=\"token parameter variable\">-l<\/span> <span class=\"token string\">&#034;tail -f \/var\/log\/auth.log&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u540c\u65f6\u76d1\u63a7 \/var\/log\/syslog \u548c \/var\/log\/auth.log \u4e24\u4e2a\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u5206\u522b\u7b5b\u9009\u51fa\u5305\u542b\u201c\u9519\u8bef\u6a21\u5f0f1\u201d\u548c\u201c\u9519\u8bef\u6a21\u5f0f2\u201d\u7684\u884c\u3002<\/p>\n<h5>5. \u5229\u7528 journalctl \u7684\u8fc7\u6ee4\u529f\u80fd<\/h5>\n<p>\u5bf9\u4e8e\u4f7f\u7528 systemd \u7684\u7cfb\u7edf&#xff0c;journalctl \u547d\u4ee4\u63d0\u4f9b\u4e86\u5f3a\u5927\u7684\u65e5\u5fd7\u67e5\u770b\u548c\u7b5b\u9009\u529f\u80fd&#xff0c;\u652f\u6301\u6309\u65f6\u95f4\u3001\u670d\u52a1\u3001\u4f18\u5148\u7ea7\u7b49\u591a\u79cd\u6761\u4ef6\u7b5b\u9009\u65e5\u5fd7\u3002<\/p>\n<p>journalctl <span class=\"token parameter variable\">-f<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">grep<\/span> <span class=\"token string\">&#034;\u7279\u5b9a\u5173\u952e\u8bcd&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u5b9e\u65f6\u663e\u793a\u7cfb\u7edf\u65e5\u5fd7\u4e2d\u5305\u542b\u201c\u7279\u5b9a\u5173\u952e\u8bcd\u201d\u7684\u6761\u76ee\u3002<\/p>\n<p>\u901a\u8fc7\u8fd9\u4e9b\u65b9\u6cd5&#xff0c;\u4f60\u53ef\u4ee5\u7075\u6d3b\u5730\u5b9e\u73b0\u65e5\u5fd7\u52a8\u6001\u622a\u53d6&#xff0c;\u6839\u636e\u5b9e\u9645\u9700\u6c42\u9009\u62e9\u5408\u9002\u7684\u5de5\u5177\u548c\u6280\u672f\u3002\u8fd9\u5bf9\u4e8e\u5b9e\u65f6\u65e5\u5fd7\u5206\u6790\u548c\u7cfb\u7edf\u76d1\u63a7\u6765\u8bf4\u662f\u975e\u5e38\u91cd\u8981\u7684\u6280\u80fd\u3002<\/p>\n<h4>7.\u7b80\u8ff0\u5982\u4f55\u5b9e\u73b0Linux\u65e5\u5fd7\u533a\u95f4\u622a\u53d6 &#xff1f;<\/h4>\n<p>\u5b9e\u73b0 Linux \u65e5\u5fd7\u533a\u95f4\u622a\u53d6\u610f\u5473\u7740\u63d0\u53d6\u65e5\u5fd7\u6587\u4ef6\u4e2d\u6307\u5b9a\u65f6\u95f4\u533a\u95f4\u6216\u884c\u53f7\u533a\u95f4\u5185\u7684\u5185\u5bb9\u3002\u8fd9\u5bf9\u4e8e\u5206\u6790\u7279\u5b9a\u4e8b\u4ef6\u6216\u95ee\u9898\u975e\u5e38\u6709\u7528\u3002\u4ee5\u4e0b\u662f\u51e0\u79cd\u65b9\u6cd5\u6765\u5b9e\u73b0\u65e5\u5fd7\u533a\u95f4\u622a\u53d6&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 sed \u547d\u4ee4\u6839\u636e\u884c\u53f7\u622a\u53d6<\/h5>\n<p>\u5982\u679c\u4f60\u77e5\u9053\u9700\u8981\u622a\u53d6\u7684\u65e5\u5fd7\u5185\u5bb9\u7684\u8d77\u59cb\u548c\u7ed3\u675f\u884c\u53f7&#xff0c;\u53ef\u4ee5\u4f7f\u7528 sed \u547d\u4ee4&#xff1a;<\/p>\n<p><span class=\"token function\">sed<\/span> <span class=\"token parameter variable\">-n<\/span> <span class=\"token string\">&#039;\u8d77\u59cb\u884c\u53f7,\u7ed3\u675f\u884c\u53f7p&#039;<\/span> \u65e5\u5fd7\u6587\u4ef6<\/p>\n<p>\u4f8b\u5982&#xff0c;\u622a\u53d6 \/var\/log\/syslog \u6587\u4ef6\u7684\u7b2c100\u884c\u5230\u7b2c200\u884c&#xff1a;<\/p>\n<p><span class=\"token function\">sed<\/span> <span class=\"token parameter variable\">-n<\/span> <span class=\"token string\">&#039;100,200p&#039;<\/span> \/var\/log\/syslog<\/p>\n<h5>2. \u4f7f\u7528 awk \u547d\u4ee4\u6839\u636e\u6a21\u5f0f\u622a\u53d6<\/h5>\n<p>awk \u53ef\u4ee5\u57fa\u4e8e\u590d\u6742\u7684\u6a21\u5f0f\u548c\u6761\u4ef6\u6765\u5904\u7406\u6587\u672c&#xff0c;\u5305\u62ec\u6839\u636e\u65f6\u95f4\u622a\u53d6\u65e5\u5fd7\u533a\u95f4\u3002\u5982\u679c\u65e5\u5fd7\u4e2d\u5305\u542b\u65f6\u95f4\u6233&#xff0c;\u4f60\u53ef\u4ee5\u8fd9\u6837\u505a&#xff1a;<\/p>\n<p><span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;\/\u8d77\u59cb\u6a21\u5f0f\/,\/\u7ed3\u675f\u6a21\u5f0f\/&#039;<\/span> \u65e5\u5fd7\u6587\u4ef6<\/p>\n<p>\u4f8b\u5982&#xff0c;\u622a\u53d6 \/var\/log\/syslog \u4e2d\u4ece&#034;Jan 1 12:00:00&#034;\u5230&#034;Jan 2 12:00:00&#034;\u4e4b\u95f4\u7684\u65e5\u5fd7&#xff1a;<\/p>\n<p><span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;\/Jan 1 12:00:00\/,\/Jan 2 12:00:00\/&#039;<\/span> \/var\/log\/syslog<\/p>\n<h5>3. \u4f7f\u7528 grep \u547d\u4ee4\u4e0e\u6b63\u5219\u8868\u8fbe\u5f0f<\/h5>\n<p>\u7ed3\u5408 grep \u548c\u6b63\u5219\u8868\u8fbe\u5f0f\u53ef\u4ee5\u5b9e\u73b0\u57fa\u4e8e\u7279\u5b9a\u6a21\u5f0f\u7684\u65e5\u5fd7\u622a\u53d6\u3002\u5982\u679c\u662f\u6309\u65e5\u671f\u622a\u53d6&#xff0c;\u53ef\u4ee5\u8fd9\u6837&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token parameter variable\">-E<\/span> <span class=\"token string\">&#039;^(\u65e5\u671f1|\u65e5\u671f2|\u65e5\u671f3)&#039;<\/span> \u65e5\u5fd7\u6587\u4ef6<\/p>\n<p>\u4f8b\u5982&#xff0c;\u622a\u53d6 \/var\/log\/auth.log \u4e2d\u6240\u67092023\u5e741\u67081\u65e5\u7684\u65e5\u5fd7&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token parameter variable\">-E<\/span> <span class=\"token string\">&#039;^Jan  1&#039;<\/span> \/var\/log\/auth.log<\/p>\n<h5>4. \u4f7f\u7528 journalctl \u547d\u4ee4\u622a\u53d6\u65f6\u95f4\u533a\u95f4\u7684\u65e5\u5fd7<\/h5>\n<p>\u5bf9\u4e8e\u4f7f\u7528 systemd \u7684\u7cfb\u7edf&#xff0c;journalctl \u63d0\u4f9b\u4e86\u6309\u65f6\u95f4\u622a\u53d6\u65e5\u5fd7\u7684\u529f\u80fd&#xff0c;\u975e\u5e38\u65b9\u4fbf&#xff1a;<\/p>\n<p>journalctl <span class=\"token parameter variable\">&#8211;since<\/span> <span class=\"token string\">&#034;2023-01-01 12:00:00&#034;<\/span> <span class=\"token parameter variable\">&#8211;until<\/span> <span class=\"token string\">&#034;2023-01-02 12:00:00&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u622a\u53d6\u4ece2023\u5e741\u67081\u65e5\u4e2d\u5348\u52301\u67082\u65e5\u4e2d\u5348\u7684\u6240\u6709\u7cfb\u7edf\u65e5\u5fd7\u3002<\/p>\n<h5>\u7ed3\u5408\u5de5\u5177\u4f7f\u7528<\/h5>\n<p>\u5728\u67d0\u4e9b\u60c5\u51b5\u4e0b&#xff0c;\u5355\u4e00\u5de5\u5177\u53ef\u80fd\u65e0\u6cd5\u6ee1\u8db3\u6240\u6709\u9700\u6c42&#xff0c;\u4f60\u53ef\u80fd\u9700\u8981\u5c06\u591a\u4e2a\u547d\u4ee4\u7ed3\u5408\u8d77\u6765\u4f7f\u7528\u3002\u4f8b\u5982&#xff0c;\u4f7f\u7528 grep \u8fc7\u6ee4\u7279\u5b9a\u65e5\u671f\u7684\u65e5\u5fd7&#xff0c;\u7136\u540e\u7528 awk \u8fdb\u4e00\u6b65\u5904\u7406\u8f93\u51fa\u7ed3\u679c&#xff1a;<\/p>\n<p><span class=\"token function\">grep<\/span> <span class=\"token string\">&#039;Jan  1&#039;<\/span> \/var\/log\/syslog <span class=\"token operator\">|<\/span> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $5, $6, $0}&#039;<\/span><\/p>\n<p>\u901a\u8fc7\u8fd9\u4e9b\u65b9\u6cd5&#xff0c;\u4f60\u53ef\u4ee5\u6839\u636e\u9700\u8981\u4ece Linux \u65e5\u5fd7\u6587\u4ef6\u4e2d\u622a\u53d6\u7279\u5b9a\u533a\u95f4\u7684\u5185\u5bb9&#xff0c;\u65e0\u8bba\u662f\u57fa\u4e8e\u884c\u53f7\u8fd8\u662f\u65f6\u95f4\u533a\u95f4\u3002\u8fd9\u5bf9\u4e8e\u65e5\u5fd7\u5206\u6790\u548c\u95ee\u9898\u8bca\u65ad\u6765\u8bf4\u975e\u5e38\u6709\u7528\u3002<\/p>\n<h4>8.\u5982\u4f55Linux\u4e0b\u65e5\u5fd7\u6587\u4ef6\u8fc7\u5927&#xff0c;\u5982\u4f55\u5b9e\u73b0\u5206\u5272&#xff0c;\u8f6c\u50a8 &#xff1f;<\/h4>\n<p>\u5f53 Linux \u4e0b\u7684\u65e5\u5fd7\u6587\u4ef6\u53d8\u5f97\u8fc7\u5927\u65f6&#xff0c;\u5b83\u4eec\u4e0d\u4ec5\u4f1a\u5360\u7528\u5927\u91cf\u78c1\u76d8\u7a7a\u95f4&#xff0c;\u800c\u4e14\u8fd8\u4f1a\u4f7f\u65e5\u5fd7\u5904\u7406\u53d8\u5f97\u4f4e\u6548\u3002\u65e5\u5fd7\u6587\u4ef6\u7684\u5206\u5272\u548c\u8f6c\u50a8\u53ef\u4ee5\u5e2e\u52a9\u7ba1\u7406\u8fd9\u4e9b\u5927\u6587\u4ef6\u3002\u8fd9\u91cc\u6709\u51e0\u79cd\u65b9\u6cd5\u53ef\u4ee5\u5b9e\u73b0\u65e5\u5fd7\u5206\u5272\u548c\u8f6c\u50a8&#xff1a;<\/p>\n<h5>1. \u4f7f\u7528 logrotate<\/h5>\n<p>logrotate \u662f Linux \u4e0a\u7528\u4e8e\u81ea\u52a8\u7ba1\u7406\u3001\u538b\u7f29\u3001\u5220\u9664\u548c\u8f6e\u8f6c\u65e5\u5fd7\u6587\u4ef6\u7684\u6807\u51c6\u5de5\u5177\u3002\u5927\u591a\u6570 Linux \u53d1\u884c\u7248\u90fd\u9884\u88c5\u4e86 logrotate \u5e76\u4e14\u5df2\u7ecf\u914d\u7f6e\u597d\u4e86\u7528\u4e8e\u7cfb\u7edf\u65e5\u5fd7\u7684\u8f6e\u8f6c\u7b56\u7565\u3002<\/p>\n<ul>\n<li>\u914d\u7f6e logrotate&#xff1a;\u4f60\u53ef\u4ee5\u901a\u8fc7\u7f16\u8f91 \/etc\/logrotate.conf \u6587\u4ef6\u6216\u5728 \/etc\/logrotate.d\/ \u76ee\u5f55\u4e0b\u521b\u5efa\u65b0\u7684\u914d\u7f6e\u6587\u4ef6\u6765\u5b9a\u5236 logrotate \u7684\u884c\u4e3a\u3002\u914d\u7f6e\u6587\u4ef6\u5141\u8bb8\u4f60\u8bbe\u7f6e\u8f6e\u8f6c\u5468\u671f\u3001\u538b\u7f29\u9009\u9879\u3001\u8f6e\u8f6c\u524d\u540e\u6267\u884c\u7684\u811a\u672c\u7b49\u3002<\/li>\n<\/ul>\n<p>\u4f8b\u5982&#xff0c;\u4e3a \/var\/log\/myapp.log \u521b\u5efa\u4e00\u4e2a\u7b80\u5355\u7684 logrotate \u914d\u7f6e\u53ef\u80fd\u770b\u8d77\u6765\u50cf\u8fd9\u6837&#xff1a;<\/p>\n<p>\/var\/log\/myapp.log {<br \/>\n    daily<br \/>\n    rotate 7<br \/>\n    compress<br \/>\n    delaycompress<br \/>\n    missingok<br \/>\n    notifempty<br \/>\n    create 640 root adm<br \/>\n}<\/p>\n<p>\u8fd9\u4e2a\u914d\u7f6e\u610f\u5473\u7740 logrotate \u5c06\u6bcf\u5929\u8f6e\u8f6c myapp.log&#xff0c;\u4fdd\u75597\u5929\u7684\u65e5\u5fd7&#xff0c;\u538b\u7f29\u65e7\u65e5\u5fd7&#xff0c;\u5982\u679c\u65e5\u5fd7\u6587\u4ef6\u4e0d\u5b58\u5728\u5219\u5ffd\u7565&#xff0c;\u7a7a\u65e5\u5fd7\u6587\u4ef6\u4e0d\u8f6e\u8f6c&#xff0c;\u4e14\u521b\u5efa\u65b0\u7684\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u8bbe\u7f6e\u76f8\u5e94\u7684\u6743\u9650\u548c\u6240\u6709\u8005\u3002<\/p>\n<h5>2. \u624b\u52a8\u5206\u5272\u65e5\u5fd7\u6587\u4ef6<\/h5>\n<p>\u5982\u679c\u4f60\u9700\u8981\u7acb\u5373\u5206\u5272\u4e00\u4e2a\u8fc7\u5927\u7684\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u800c\u4e0d\u7b49\u5f85 logrotate \u7684\u81ea\u52a8\u6267\u884c&#xff0c;\u53ef\u4ee5\u624b\u52a8\u8fdb\u884c\u3002\u4e00\u79cd\u65b9\u6cd5\u662f\u4f7f\u7528 split \u547d\u4ee4\u5206\u5272\u6587\u4ef6&#xff0c;\u53e6\u4e00\u79cd\u65b9\u6cd5\u662f\u76f4\u63a5\u79fb\u52a8\u5f53\u524d\u65e5\u5fd7\u6587\u4ef6\u7136\u540e\u901a\u77e5\u76f8\u5173\u670d\u52a1\u521b\u5efa\u4e00\u4e2a\u65b0\u7684\u65e5\u5fd7\u6587\u4ef6\u3002<\/p>\n<ul>\n<li>\u79fb\u52a8\u65e5\u5fd7\u6587\u4ef6&#xff1a;<\/li>\n<\/ul>\n<p><span class=\"token function\">mv<\/span> \/var\/log\/large.log \/var\/log\/large.log.old<\/p>\n<ul>\n<li>\u901a\u77e5\u76f8\u5173\u670d\u52a1&#xff1a;\u5bf9\u4e8e\u5927\u591a\u6570\u670d\u52a1&#xff0c;\u7279\u522b\u662f\u90a3\u4e9b\u901a\u8fc7 systemd \u7ba1\u7406\u7684&#xff0c;\u53ef\u4ee5\u4f7f\u7528 systemctl \u91cd\u65b0\u52a0\u8f7d\u6216\u91cd\u542f\u670d\u52a1\u6765\u4f7f\u5176\u5f00\u59cb\u5199\u5165\u65b0\u7684\u65e5\u5fd7\u6587\u4ef6\u3002<\/li>\n<\/ul>\n<p>systemctl restart myservice<\/p>\n<p>\u6216\u8005&#xff0c;\u5982\u679c\u670d\u52a1\u652f\u6301\u4e0d\u91cd\u542f\u5373\u53ef\u91cd\u65b0\u6253\u5f00\u65e5\u5fd7\u6587\u4ef6\u7684\u4fe1\u53f7&#xff08;\u4f8b\u5982&#xff0c;\u8bb8\u591a\u5b88\u62a4\u8fdb\u7a0b\u4f1a\u5728\u63a5\u6536\u5230 SIGHUP \u4fe1\u53f7\u65f6\u91cd\u65b0\u6253\u5f00\u65e5\u5fd7\u6587\u4ef6&#xff09;&#xff0c;\u4f60\u53ef\u4ee5\u53d1\u9001 SIGHUP&#xff1a;<\/p>\n<p><span class=\"token function\">pkill<\/span> <span class=\"token parameter variable\">-HUP<\/span> myservice<\/p>\n<h5>3. \u4f7f\u7528 cron \u4efb\u52a1\u5b9a\u671f\u5206\u5272\u65e5\u5fd7<\/h5>\n<p>\u5bf9\u4e8e\u6ca1\u6709\u901a\u8fc7 logrotate \u7ba1\u7406\u7684\u81ea\u5b9a\u4e49\u65e5\u5fd7\u6216\u7279\u5b9a\u9700\u6c42&#xff0c;\u4f60\u53ef\u4ee5\u7f16\u5199\u4e00\u4e2a\u7b80\u5355\u7684\u811a\u672c\u6765\u5206\u5272\u65e5\u5fd7&#xff0c;\u7136\u540e\u901a\u8fc7 cron \u5b9a\u671f\u6267\u884c\u8fd9\u4e2a\u811a\u672c\u3002<\/p>\n<ul>\n<li>\n<p>\u521b\u5efa\u5206\u5272\u811a\u672c&#xff1a;\u7f16\u5199\u4e00\u4e2a\u811a\u672c\u6765\u79fb\u52a8\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u5e76\u901a\u77e5\u76f8\u5173\u670d\u52a1\u3002<\/p>\n<\/li>\n<li>\n<p>\u8bbe\u7f6e cron \u4efb\u52a1&#xff1a;\u901a\u8fc7 crontab -e \u6dfb\u52a0\u4e00\u4e2a\u5b9a\u65f6\u4efb\u52a1\u6765\u5b9a\u671f\u6267\u884c\u4f60\u7684\u5206\u5272\u811a\u672c\u3002<\/p>\n<\/li>\n<\/ul>\n<p>\u8bb0\u5f97\u5728\u6267\u884c\u65e5\u5fd7\u5206\u5272\u540e&#xff0c;\u9002\u5f53\u5730\u538b\u7f29\u548c\u6e05\u7406\u65e7\u7684\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u4ee5\u8282\u7701\u78c1\u76d8\u7a7a\u95f4\u5e76\u4fdd\u6301\u65e5\u5fd7\u7ba1\u7406\u7684\u9ad8\u6548\u6027\u3002<\/p>\n<h4>9.\u7b80\u8ff0Linux\u65e5\u5fd7\u8bb0\u5f55\u670d\u52a1&#xff0c;\u65e5\u5fd7\u7ba1\u7406\u5de5\u5177 &#xff1f;<\/h4>\n<p>Linux\u7cfb\u7edf\u4e2d&#xff0c;\u65e5\u5fd7\u8bb0\u5f55\u670d\u52a1\u548c\u7ba1\u7406\u5de5\u5177\u5bf9\u4e8e\u76d1\u63a7\u7cfb\u7edf\u5065\u5eb7\u3001\u8bca\u65ad\u95ee\u9898\u4ee5\u53ca\u5b89\u5168\u5ba1\u8ba1\u81f3\u5173\u91cd\u8981\u3002\u4e0b\u9762\u662f\u4e00\u4e9b\u5173\u952e\u7684\u65e5\u5fd7\u8bb0\u5f55\u670d\u52a1\u548c\u7ba1\u7406\u5de5\u5177\u7684\u7b80\u8ff0&#xff1a;<\/p>\n<h5>\u65e5\u5fd7\u8bb0\u5f55\u670d\u52a1<\/h5>\n<li>\n<p>Syslog&#xff1a;<\/p>\n<ul>\n<li>\u63cf\u8ff0&#xff1a;Syslog\u662f\u6700\u4f20\u7edf\u7684\u65e5\u5fd7\u7ba1\u7406\u7cfb\u7edf&#xff0c;\u7528\u4e8e\u6536\u96c6\u7cfb\u7edf\u7684\u65e5\u5fd7\u4fe1\u606f\u5e76\u5c06\u5176\u5b58\u50a8\u5728\u672c\u5730\u6216\u8fdc\u7a0b\u7684\u65e5\u5fd7\u670d\u52a1\u5668\u4e0a\u3002<\/li>\n<li>\u7ec4\u4ef6&#xff1a;\u5b83\u7531\u4e09\u4e2a\u4e3b\u8981\u90e8\u5206\u7ec4\u6210&#xff1a;\u65e5\u5fd7\u5ba2\u6237\u7aef&#xff08;\u751f\u6210\u65e5\u5fd7\u6d88\u606f\u7684\u7a0b\u5e8f&#xff09;\u3001\u65e5\u5fd7\u670d\u52a1\u5668&#xff08;\u6536\u96c6\u548c\u5b58\u50a8\u65e5\u5fd7\u6d88\u606f&#xff09;\u3001\u65e5\u5fd7\u534f\u8bae&#xff08;\u5b9a\u4e49\u6d88\u606f\u683c\u5f0f\u548c\u4f20\u8f93\u65b9\u5f0f&#xff09;\u3002<\/li>\n<li>\u5b9e\u73b0&#xff1a;Syslog\u7684\u5b9e\u73b0\u6709\u591a\u79cd&#xff0c;\u5305\u62ecrsyslog\u548csyslog-ng\u7b49&#xff0c;\u5b83\u4eec\u63d0\u4f9b\u4e86\u66f4\u9ad8\u7ea7\u7684\u8fc7\u6ee4\u3001\u8f6c\u53d1\u548c\u5904\u7406\u529f\u80fd\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Systemd Journal&#xff1a;<\/p>\n<ul>\n<li>\u63cf\u8ff0&#xff1a;systemd-journald\u662f\u4e00\u4e2a\u4e0esystemd\u7cfb\u7edf\u548c\u670d\u52a1\u7ba1\u7406\u5668\u96c6\u6210\u7684\u65e5\u5fd7\u6536\u96c6\u5b88\u62a4\u8fdb\u7a0b&#xff0c;\u63d0\u4f9b\u4e86\u65e5\u5fd7\u6536\u96c6\u548c\u67e5\u8be2\u7684\u529f\u80fd\u3002<\/li>\n<li>\u7279\u70b9&#xff1a;\u5b83\u6536\u96c6\u4e86\u6765\u81ea\u5185\u6838\u3001\u521d\u59cbRAM\u78c1\u76d8&#xff08;initrd&#xff09;\u3001\u65e9\u671f\u7528\u6237\u7a7a\u95f4\u8fc7\u7a0b\u548c\u6807\u51c6\u8f93\u51fa\/\u9519\u8bef\u8f93\u51fa\u7684\u65e5\u5fd7\u3002journalctl\u662f\u67e5\u8be2Systemd\u65e5\u5fd7\u7684\u4e3b\u8981\u5de5\u5177&#xff0c;\u63d0\u4f9b\u4e86\u5f3a\u5927\u7684\u8fc7\u6ee4\u548c\u68c0\u7d22\u80fd\u529b\u3002<\/li>\n<\/ul>\n<\/li>\n<h5>\u65e5\u5fd7\u7ba1\u7406\u5de5\u5177<\/h5>\n<li>\n<p>Logrotate&#xff1a;<\/p>\n<ul>\n<li>\u63cf\u8ff0&#xff1a;logrotate\u662f\u4e00\u4e2a\u7528\u4e8e\u7ba1\u7406\u65e5\u5fd7\u6587\u4ef6\u7684\u5de5\u5177&#xff0c;\u5b83\u53ef\u4ee5\u81ea\u52a8\u8f6e\u8f6c\u3001\u538b\u7f29\u3001\u5220\u9664\u548c\u90ae\u5bc4\u65e5\u5fd7\u6587\u4ef6\u3002<\/li>\n<li>\u529f\u80fd&#xff1a;\u53ef\u4ee5\u6839\u636e\u6587\u4ef6\u5927\u5c0f\u3001\u65f6\u95f4\u7b49\u6761\u4ef6\u81ea\u52a8\u5904\u7406\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u51cf\u5c11\u5355\u4e2a\u65e5\u5fd7\u6587\u4ef6\u7684\u5927\u5c0f&#xff0c;\u6e05\u7406\u65e7\u7684\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u4fdd\u6301\u65e5\u5fd7\u7ba1\u7406\u7684\u53ef\u6301\u7eed\u6027\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Logwatch \/ Logcheck&#xff1a;<\/p>\n<ul>\n<li>\u63cf\u8ff0&#xff1a;\u8fd9\u4e9b\u5de5\u5177\u7528\u4e8e\u7b80\u5316\u65e5\u5fd7\u7ba1\u7406\u8fc7\u7a0b&#xff0c;\u901a\u8fc7\u5206\u6790\u65e5\u5fd7\u6587\u4ef6\u5e76\u751f\u6210\u7b80\u6d01\u7684\u62a5\u544a\u6458\u8981&#xff0c;\u5e2e\u52a9\u7ba1\u7406\u5458\u5feb\u901f\u4e86\u89e3\u7cfb\u7edf\u72b6\u6001\u548c\u6f5c\u5728\u95ee\u9898\u3002<\/li>\n<li>\u7279\u70b9&#xff1a;Logwatch\u548cLogcheck\u90fd\u53ef\u4ee5\u5b9a\u5236\u62a5\u544a\u7684\u5185\u5bb9\u548c\u9891\u7387&#xff0c;\u81ea\u52a8\u53d1\u9001\u65e5\u5fd7\u6458\u8981&#xff0c;\u5e2e\u52a9\u51cf\u5c11\u624b\u52a8\u68c0\u67e5\u65e5\u5fd7\u6587\u4ef6\u7684\u5de5\u4f5c\u91cf\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Graylog \/ ELK Stack&#xff1a;<\/p>\n<ul>\n<li>\u63cf\u8ff0&#xff1a;\u5bf9\u4e8e\u66f4\u590d\u6742\u7684\u65e5\u5fd7\u7ba1\u7406\u9700\u6c42&#xff0c;Graylog\u548cELK Stack&#xff08;Elasticsearch, Logstash, Kibana&#xff09;\u63d0\u4f9b\u4e86\u5f3a\u5927\u7684\u65e5\u5fd7\u805a\u5408\u3001\u5206\u6790\u548c\u53ef\u89c6\u5316\u5e73\u53f0\u3002<\/li>\n<li>\u529f\u80fd&#xff1a;\u8fd9\u4e9b\u5de5\u5177\u652f\u6301\u4ece\u591a\u4e2a\u6765\u6e90\u6536\u96c6\u65e5\u5fd7&#xff0c;\u63d0\u4f9b\u5b9e\u65f6\u5206\u6790\u3001\u5168\u6587\u641c\u7d22\u548c\u6570\u636e\u53ef\u89c6\u5316\u529f\u80fd&#xff0c;\u5e2e\u52a9\u7ba1\u7406\u5458\u6df1\u5165\u7406\u89e3\u5927\u89c4\u6a21\u73af\u5883\u4e2d\u7684\u65e5\u5fd7\u6570\u636e\u3002<\/li>\n<\/ul>\n<\/li>\n<h5>\u5c0f\u7ed3<\/h5>\n<p>Linux\u65e5\u5fd7\u8bb0\u5f55\u670d\u52a1\u548c\u7ba1\u7406\u5de5\u5177\u4e3a\u7cfb\u7edf\u7ba1\u7406\u5458\u63d0\u4f9b\u4e86\u5f3a\u5927\u7684\u652f\u6301&#xff0c;\u5e2e\u52a9\u4ed6\u4eec\u76d1\u63a7\u7cfb\u7edf\u6d3b\u52a8\u3001\u5feb\u901f\u8bca\u65ad\u95ee\u9898\u5e76\u6267\u884c\u5b89\u5168\u5ba1\u8ba1\u3002\u4ece\u57fa\u7840\u7684Syslog\u670d\u52a1\u5230\u590d\u6742\u7684\u65e5\u5fd7\u5206\u6790\u5e73\u53f0\u5982ELK Stack&#xff0c;\u8fd9\u4e9b\u5de5\u5177\u548c\u670d\u52a1\u6db5\u76d6\u4e86\u4ece\u7b80\u5355\u5230\u590d\u6742\u7684\u5404\u79cd\u65e5\u5fd7\u7ba1\u7406\u9700\u6c42\u3002\u5408\u7406\u9009\u62e9\u548c\u914d\u7f6e\u8fd9\u4e9b\u5de5\u5177&#xff0c;\u53ef\u4ee5\u6781\u5927\u63d0\u9ad8\u65e5\u5fd7\u7ba1\u7406\u7684\u6548\u7387\u548c\u6548\u679c\u3002<\/p>\n<h4>10.\u7b80\u8ff0\u5982\u4f55\u5bf9Nginx\u8bbf\u95ee\u65e5\u5fd7\u5206\u6790\u4ee5\u53ca\u5e38\u7528\u7684\u547d\u4ee4 &#xff1f;<\/h4>\n<p>\u5bf9 Nginx \u8bbf\u95ee\u65e5\u5fd7\u7684\u5206\u6790\u53ef\u4ee5\u5e2e\u52a9\u4f60\u4e86\u89e3\u7f51\u7ad9\u7684\u6d41\u91cf\u6a21\u5f0f\u3001\u8bc6\u522b\u6f5c\u5728\u7684\u5b89\u5168\u95ee\u9898\u3001\u4f18\u5316\u7f51\u7ad9\u6027\u80fd\u7b49\u3002\u65e5\u5fd7\u6587\u4ef6\u901a\u5e38\u4f4d\u4e8e \/var\/log\/nginx\/access.log&#xff0c;\u4f46\u8fd9\u53ef\u80fd\u6839\u636e\u4f60\u7684\u5b89\u88c5\u548c\u914d\u7f6e\u800c\u6709\u6240\u4e0d\u540c\u3002\u4ee5\u4e0b\u662f\u4e00\u4e9b\u57fa\u672c\u547d\u4ee4\u548c\u5de5\u5177&#xff0c;\u7528\u4e8e\u5206\u6790 Nginx \u8bbf\u95ee\u65e5\u5fd7&#xff1a;<\/p>\n<h5>\u5e38\u7528\u547d\u4ee4<\/h5>\n<li>\n<p>\u67e5\u770b\u6700\u9891\u7e41\u7684 IP \u5730\u5740<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $1}&#039;<\/span> \/var\/log\/nginx\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">uniq<\/span> <span class=\"token parameter variable\">-c<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token parameter variable\">-nr<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">head<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u63d0\u53d6\u6240\u6709\u7684 IP \u5730\u5740&#xff0c;\u8ba1\u6570\u3001\u6392\u5e8f\u5e76\u5217\u51fa\u51fa\u73b0\u6b21\u6570\u6700\u591a\u7684 IP \u5730\u5740\u3002<\/p>\n<\/li>\n<li>\n<p>\u5206\u6790\u6700\u5e38\u8bf7\u6c42\u7684\u9875\u9762<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $7}&#039;<\/span> \/var\/log\/nginx\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">uniq<\/span> <span class=\"token parameter variable\">-c<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token parameter variable\">-nr<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">head<\/span><\/p>\n<p>\u8fd9\u4f1a\u663e\u793a\u6700\u5e38\u88ab\u8bf7\u6c42\u7684\u9875\u9762\u8def\u5f84\u3002<\/p>\n<\/li>\n<li>\n<p>\u68c0\u67e5\u8fd4\u56de\u72b6\u6001\u7801<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $9}&#039;<\/span> \/var\/log\/nginx\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">uniq<\/span> <span class=\"token parameter variable\">-c<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token parameter variable\">-nr<\/span><\/p>\n<p>\u901a\u8fc7\u8fd9\u4e2a\u547d\u4ee4&#xff0c;\u4f60\u53ef\u4ee5\u770b\u5230\u5404\u79cd HTTP \u72b6\u6001\u7801\u7684\u5206\u5e03\u60c5\u51b5&#xff0c;\u4e86\u89e3\u662f\u5426\u6709\u5927\u91cf\u7684 4xx \u6216 5xx \u9519\u8bef\u3002<\/p>\n<\/li>\n<li>\n<p>\u67e5\u627e\u7279\u5b9a\u65f6\u95f4\u6bb5\u7684\u8bf7\u6c42<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;$4 &gt;&#061; &#034;[06\/Feb\/2024:00:00:00&#034; &amp;&amp; $4 &lt;&#061; &#034;[06\/Feb\/2024:23:59:59&#034;&#039;<\/span> \/var\/log\/nginx\/access.log<\/p>\n<p>\u4fee\u6539\u65e5\u671f\u4ee5\u9002\u5e94\u4f60\u7684\u9700\u6c42&#xff0c;\u8fd9\u5bf9\u4e8e\u5206\u6790\u7279\u5b9a\u4e8b\u4ef6\u6216\u95ee\u9898\u975e\u5e38\u6709\u7528\u3002<\/p>\n<\/li>\n<h5>\u65e5\u5fd7\u5206\u6790\u5de5\u5177<\/h5>\n<p>\u9664\u4e86\u8fd9\u4e9b\u57fa\u672c\u547d\u4ee4&#xff0c;\u8fd8\u6709\u4e00\u4e9b\u5de5\u5177\u53ef\u4ee5\u5e2e\u52a9\u4f60\u66f4\u6df1\u5165\u5730\u5206\u6790 Nginx \u8bbf\u95ee\u65e5\u5fd7&#xff1a;<\/p>\n<li>\n<p>GoAccess<\/p>\n<ul>\n<li>\u4e00\u4e2a\u5b9e\u65f6\u7684\u65e5\u5fd7\u5206\u6790\u5de5\u5177&#xff0c;\u63d0\u4f9b\u6587\u672c\u548c\u57fa\u4e8e\u7f51\u9875\u7684\u754c\u9762\u3002<\/li>\n<li>\u5b89\u88c5 GoAccess (sudo apt-get install goaccess \u6216\u4f7f\u7528\u5176\u4ed6\u5305\u7ba1\u7406\u5668)\u3002<\/li>\n<li>\u8fd0\u884c goaccess \/var\/log\/nginx\/access.log -c \u6765\u5206\u6790\u65e5\u5fd7\u5e76\u901a\u8fc7\u4e00\u4e2a\u4ea4\u4e92\u5f0f\u7684\u6587\u672c\u754c\u9762\u5c55\u793a\u7ed3\u679c&#xff0c;\u6216\u8005\u751f\u6210\u4e00\u4e2a HTML \u62a5\u544a\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Awstats<\/p>\n<ul>\n<li>\u4e00\u4e2a\u514d\u8d39\u7684\u65e5\u5fd7\u5206\u6790\u5de5\u5177&#xff0c;\u53ef\u4ee5\u751f\u6210\u8be6\u7ec6\u7684\u7f51\u7ad9\u3001FTP \u6216\u90ae\u4ef6\u670d\u52a1\u5668\u7edf\u8ba1\u4fe1\u606f\u3002<\/li>\n<li>\u5b83\u9700\u8981\u4e00\u5b9a\u7684\u914d\u7f6e\u5de5\u4f5c&#xff0c;\u5305\u62ec\u65e5\u5fd7\u6587\u4ef6\u7684\u4f4d\u7f6e\u548c\u62a5\u544a\u751f\u6210\u7684\u9891\u7387\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Logstash<\/p>\n<ul>\n<li>\u90e8\u5206 ELK Stack&#xff08;Elasticsearch, Logstash, Kibana&#xff09;\u7684 Logstash \u53ef\u4ee5\u7528\u6765\u6536\u96c6\u3001\u8f6c\u6362\u5e76\u5c06\u65e5\u5fd7\u6570\u636e\u5b58\u50a8\u5230 Elasticsearch \u4e2d\u3002<\/li>\n<li>\u7ed3\u5408 Kibana&#xff0c;\u4f60\u53ef\u4ee5\u5bf9 Nginx \u8bbf\u95ee\u65e5\u5fd7\u8fdb\u884c\u6df1\u5165\u7684\u53ef\u89c6\u5316\u5206\u6790\u3002<\/li>\n<\/ul>\n<\/li>\n<p>\u901a\u8fc7\u8fd9\u4e9b\u547d\u4ee4\u548c\u5de5\u5177&#xff0c;\u4f60\u53ef\u4ee5\u4ece\u591a\u4e2a\u7ef4\u5ea6\u5206\u6790 Nginx \u8bbf\u95ee\u65e5\u5fd7&#xff0c;\u4ece\u800c\u83b7\u5f97\u5173\u4e8e\u7f51\u7ad9\u6027\u80fd\u3001\u7528\u6237\u884c\u4e3a\u548c\u6f5c\u5728\u5b89\u5168\u95ee\u9898\u7684\u5b9d\u8d35\u89c1\u89e3\u3002<\/p>\n<h4>11.\u5982\u4f55\u5bf9Apache\u65e5\u5fd7\u5206\u6790\u4e0e\u72b6\u6001\u67e5\u770b\u65b9\u6cd5 ?<\/h4>\n<p>Apache\u65e5\u5fd7\u5206\u6790\u5bf9\u4e8e\u7406\u89e3\u7f51\u7ad9\u7684\u8bbf\u95ee\u6a21\u5f0f\u3001\u76d1\u63a7\u670d\u52a1\u5668\u6027\u80fd\u3001\u8bca\u65ad\u9519\u8bef\u548c\u5b89\u5168\u5206\u6790\u81f3\u5173\u91cd\u8981\u3002Apache\u901a\u5e38\u6709\u4e24\u79cd\u4e3b\u8981\u7684\u65e5\u5fd7\u6587\u4ef6&#xff1a;\u8bbf\u95ee\u65e5\u5fd7&#xff08;\u901a\u5e38\u662faccess_log&#xff09;\u548c\u9519\u8bef\u65e5\u5fd7&#xff08;\u901a\u5e38\u662ferror_log&#xff09;\u3002\u4ee5\u4e0b\u662f\u4e00\u4e9b\u7528\u4e8e\u5206\u6790 Apache \u65e5\u5fd7\u548c\u67e5\u770b\u670d\u52a1\u5668\u72b6\u6001\u7684\u65b9\u6cd5&#xff1a;<\/p>\n<h5>\u5206\u6790 Apache \u8bbf\u95ee\u65e5\u5fd7<\/h5>\n<li>\n<p>\u67e5\u770b\u6700\u5e38\u8bbf\u95ee\u7684\u9875\u9762<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $7}&#039;<\/span> \/var\/log\/apache2\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">uniq<\/span> <span class=\"token parameter variable\">-c<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token parameter variable\">-nr<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">head<\/span><\/p>\n<p>\u8fd9\u5c06\u663e\u793a\u6700\u9891\u7e41\u8bf7\u6c42\u7684URL\u3002<\/p>\n<\/li>\n<li>\n<p>\u67e5\u627e\u6700\u6d3b\u8dc3\u7684IP\u5730\u5740<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;{print $1}&#039;<\/span> \/var\/log\/apache2\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">uniq<\/span> <span class=\"token parameter variable\">-c<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">sort<\/span> <span class=\"token parameter variable\">-nr<\/span> <span class=\"token operator\">|<\/span> <span class=\"token function\">head<\/span><\/p>\n<p>\u4f7f\u7528\u6b64\u547d\u4ee4\u53ef\u4ee5\u627e\u5230\u53d1\u51fa\u6700\u591a\u8bf7\u6c42\u7684\u524d\u51e0\u4e2aIP\u5730\u5740\u3002<\/p>\n<\/li>\n<li>\n<p>\u5206\u6790\u7279\u5b9a\u72b6\u6001\u7801\u7684\u8bf7\u6c42<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;($9 ~ \/404\/)&#039;<\/span> \/var\/log\/apache2\/access.log <span class=\"token operator\">|<\/span> <span class=\"token function\">less<\/span><\/p>\n<p>\u8fd9\u4e2a\u4f8b\u5b50\u8fc7\u6ee4\u51fa\u6240\u6709404\u9519\u8bef\u7684\u8bf7\u6c42&#xff0c;\u4f60\u53ef\u4ee5\u66ff\u6362404\u6765\u67e5\u770b\u5176\u4ed6\u72b6\u6001\u7801\u7684\u8bf7\u6c42\u3002<\/p>\n<\/li>\n<li>\n<p>\u6309\u65f6\u95f4\u6bb5\u7b5b\u9009\u65e5\u5fd7<\/p>\n<p> <span class=\"token function\">awk<\/span> <span class=\"token string\">&#039;$4 &gt;&#061; &#034;[01\/Jan\/2024:00:00:00&#034; &amp;&amp; $4 &lt;&#061; &#034;[01\/Jan\/2024:23:59:59&#034;]&#039;<\/span> \/var\/log\/apache2\/access.log<\/p>\n<p>\u4fee\u6539\u65f6\u95f4\u8303\u56f4\u4ee5\u9002\u5e94\u4f60\u7684\u9700\u6c42&#xff0c;\u8fd9\u6709\u52a9\u4e8e\u5206\u6790\u7279\u5b9a\u65f6\u95f4\u6bb5\u5185\u7684\u65e5\u5fd7\u6570\u636e\u3002<\/p>\n<\/li>\n<h5>\u4f7f\u7528 Apache \u81ea\u5e26\u7684\u72b6\u6001\u67e5\u770b\u65b9\u6cd5<\/h5>\n<p>Apache \u63d0\u4f9b\u4e86mod_status\u6a21\u5757&#xff0c;\u7528\u4e8e\u5c55\u793a\u670d\u52a1\u5668\u7684\u5b9e\u65f6\u72b6\u6001\u4fe1\u606f\u3002\u8fd9\u9700\u8981\u5728Apache\u914d\u7f6e\u4e2d\u542f\u7528\u3002<\/p>\n<li>\n<p>\u542f\u7528 mod_status<\/p>\n<ul>\n<li>\u786e\u4fddApache\u914d\u7f6e\u6587\u4ef6&#xff08;\u5982httpd.conf\u6216apache2.conf&#xff09;\u4e2d\u542f\u7528\u4e86mod_status\u6a21\u5757\u3002<\/li>\n<li>\u914d\u7f6e\/server-status\u4f4d\u7f6e&#xff0c;\u4ee5\u4fbf\u4eceWeb\u6d4f\u89c8\u5668\u8bbf\u95ee\u72b6\u6001\u62a5\u544a\u3002<\/li>\n<\/ul>\n<p> &lt;Location &#034;\/server-status&#034;&gt;<br \/>\n    SetHandler server-status<br \/>\n    Require host example.com<br \/>\n&lt;\/Location&gt;\n <\/li>\n<li>\n<p>\u67e5\u770b Apache \u72b6\u6001<\/p>\n<ul>\n<li>\u901a\u8fc7\u6d4f\u89c8\u5668\u8bbf\u95eehttp:\/\/your-server-ip\/server-status&#xff0c;\u4f60\u53ef\u4ee5\u770b\u5230\u5305\u62ec\u5f53\u524dApache\u5de5\u4f5c\u6a21\u5f0f\u3001\u7236\u670d\u52a1\u5668\u751f\u6210\u65f6\u95f4\u3001\u5f53\u524d\u8fde\u63a5\u3001\u7a7a\u95f2\u5de5\u4f5c\u8fdb\u7a0b\u7b49\u4fe1\u606f\u3002<\/li>\n<\/ul>\n<\/li>\n<h5>\u4f7f\u7528\u65e5\u5fd7\u5206\u6790\u5de5\u5177<\/h5>\n<p>\u9664\u4e86\u624b\u52a8\u5206\u6790\u65e5\u5fd7\u5916&#xff0c;\u8fd8\u6709\u8bb8\u591a\u5de5\u5177\u53ef\u4ee5\u81ea\u52a8\u5316\u8fd9\u4e2a\u8fc7\u7a0b&#xff1a;<\/p>\n<li>\n<p>GoAccess<\/p>\n<ul>\n<li>\u4e00\u4e2a\u5f00\u6e90\u7684\u5b9e\u65f6\u65e5\u5fd7\u5206\u6790\u5668&#xff0c;\u63d0\u4f9b\u6587\u672c\u548cWeb\u754c\u9762\u3002\u5b83\u53ef\u4ee5\u5feb\u901f\u5206\u6790Apache\u65e5\u5fd7\u6587\u4ef6\u5e76\u751f\u6210\u89c6\u89c9\u62a5\u544a\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>Awstats<\/p>\n<ul>\n<li>\u4e00\u4e2a\u514d\u8d39\u7684\u5de5\u5177&#xff0c;\u7528\u4e8e\u751f\u6210\u4eceApache\u65e5\u5fd7\u4e2d\u63d0\u53d6\u7684\u8be6\u7ec6Web\u3001\u6d41\u3001FTP\u6216\u90ae\u4ef6\u670d\u52a1\u5668\u7edf\u8ba1\u4fe1\u606f\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>ELK Stack (Elasticsearch, Logstash, Kibana)<\/p>\n<ul>\n<li>\u4e00\u4e2a\u5f3a\u5927\u7684\u65e5\u5fd7\u5206\u6790\u5e73\u53f0&#xff0c;\u7528\u4e8e\u6536\u96c6\u3001\u5206\u6790\u548c\u53ef\u89c6\u5316Apache\u65e5\u5fd7\u6570\u636e\u3002<\/li>\n<\/ul>\n<\/li>\n<p>\u901a\u8fc7\u7ed3\u5408\u4f7f\u7528\u8fd9\u4e9b\u547d\u4ee4\u548c\u5de5\u5177&#xff0c;\u4f60\u53ef\u4ee5\u6709\u6548\u5730\u5206\u6790Apache\u65e5\u5fd7&#xff0c;\u6d1e\u5bdf\u8bbf\u95ee\u6a21\u5f0f&#xff0c;\u4f18\u5316\u670d\u52a1\u5668\u6027\u80fd&#xff0c;\u5e76\u52a0\u5f3a\u5b89\u5168\u63aa\u65bd\u3002<\/p>\n<h4>12.\u5982\u4f55\u67e5\u770b\u4e0e\u5206\u6790\u67e5\u770bTomcat\u65e5\u5fd7 &#xff1f;<\/h4>\n<p>Tomcat \u662f\u4e00\u4e2a\u5e7f\u6cdb\u4f7f\u7528\u7684\u5f00\u6e90 Java \u5e94\u7528\u670d\u52a1\u5668&#xff0c;\u5b83\u751f\u6210\u591a\u79cd\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u5305\u62ec\u4f46\u4e0d\u9650\u4e8e catalina.out&#xff08;Tomcat\u542f\u52a8\u53ca\u5176\u8fd0\u884c\u65e5\u5fd7&#xff09;\u3001localhost.log&#xff08;\u5e94\u7528\u65e5\u5fd7&#xff09;\u3001manager.log&#xff08;\u7ba1\u7406\u64cd\u4f5c\u65e5\u5fd7&#xff09;\u548c host-manager.log&#xff08;\u865a\u62df\u4e3b\u673a\u7ba1\u7406\u64cd\u4f5c\u65e5\u5fd7&#xff09;\u3002\u67e5\u770b\u548c\u5206\u6790\u8fd9\u4e9b\u65e5\u5fd7\u6587\u4ef6\u5bf9\u4e8e\u76d1\u63a7\u5e94\u7528\u7a0b\u5e8f\u7684\u5065\u5eb7\u72b6\u51b5\u3001\u8bca\u65ad\u95ee\u9898\u4ee5\u53ca\u6027\u80fd\u8c03\u4f18\u81f3\u5173\u91cd\u8981\u3002<\/p>\n<h5>\u67e5\u770b Tomcat \u65e5\u5fd7<\/h5>\n<p>Tomcat \u65e5\u5fd7\u6587\u4ef6\u901a\u5e38\u4f4d\u4e8e Tomcat \u5b89\u88c5\u76ee\u5f55\u4e0b\u7684 logs \u76ee\u5f55\u4e2d\u3002\u4f60\u53ef\u4ee5\u4f7f\u7528\u5982\u4e0b\u547d\u4ee4\u76f4\u63a5\u67e5\u770b\u8fd9\u4e9b\u65e5\u5fd7&#xff1a;<\/p>\n<p><span class=\"token comment\"># \u67e5\u770b catalina.out<\/span><br \/>\n<span class=\"token function\">tail<\/span> <span class=\"token parameter variable\">-f<\/span> \/path\/to\/tomcat\/logs\/catalina.out<\/p>\n<p><span class=\"token comment\"># \u67e5\u770b\u7279\u5b9a\u65e5\u671f\u7684\u65e5\u5fd7&#xff08;\u5982\u679c\u6709\u6309\u5929\u8f6e\u8f6c\u7684\u914d\u7f6e&#xff09;<\/span><br \/>\n<span class=\"token function\">cat<\/span> \/path\/to\/tomcat\/logs\/catalina.2024-02-19.log<\/p>\n<p>\u4f7f\u7528 tail -f \u547d\u4ee4\u53ef\u4ee5\u5b9e\u65f6\u67e5\u770b\u65e5\u5fd7\u6587\u4ef6\u7684\u65b0\u589e\u5185\u5bb9&#xff0c;\u8fd9\u5728\u76d1\u63a7\u5b9e\u65f6\u5e94\u7528\u7a0b\u5e8f\u6216\u8c03\u8bd5\u5b9e\u65f6\u95ee\u9898\u65f6\u975e\u5e38\u6709\u7528\u3002<\/p>\n<h5>\u5206\u6790 Tomcat \u65e5\u5fd7<\/h5>\n<li>\n<p>\u9519\u8bef\u548c\u5f02\u5e38&#xff1a;<\/p>\n<ul>\n<li>\n<p>\u4f7f\u7528 grep \u67e5\u627e\u9519\u8bef\u6216\u5f02\u5e38&#xff0c;\u8fd9\u6709\u52a9\u4e8e\u5feb\u901f\u5b9a\u4f4d\u95ee\u9898\u3002<\/p>\n<p> <span class=\"token function\">grep<\/span> <span class=\"token string\">&#039;Exception&#039;<\/span> \/path\/to\/tomcat\/logs\/catalina.out\n <\/li>\n<\/ul>\n<\/li>\n<li>\n<p>\u8bbf\u95ee\u65e5\u5fd7&#xff1a;<\/p>\n<ul>\n<li>\u5982\u679c\u542f\u7528\u4e86 Tomcat \u8bbf\u95ee\u65e5\u5fd7&#xff08;\u5728 server.xml \u4e2d\u914d\u7f6e&#xff09;&#xff0c;\u4f60\u53ef\u4ee5\u5206\u6790\u8fd9\u4e9b\u65e5\u5fd7\u4ee5\u83b7\u53d6\u8bf7\u6c42\u7684\u8be6\u7ec6\u4fe1\u606f\u3002<\/li>\n<li>\u8bbf\u95ee\u65e5\u5fd7\u6587\u4ef6\u901a\u5e38\u4ee5 .txt \u7ed3\u5c3e&#xff0c;\u4f4d\u4e8e Tomcat \u7684 logs \u76ee\u5f55\u4e0b\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>\u6027\u80fd\u5206\u6790&#xff1a;<\/p>\n<ul>\n<li>\u67e5\u627e\u957f\u65f6\u95f4\u8fd0\u884c\u7684\u8bf7\u6c42\u6216\u64cd\u4f5c&#xff0c;\u53ef\u80fd\u9700\u8981\u5206\u6790\u65e5\u5fd7\u4e2d\u7684\u65f6\u95f4\u6233\u3002<\/li>\n<li>\u4f7f\u7528\u811a\u672c\u6216\u65e5\u5fd7\u5206\u6790\u5de5\u5177\u6765\u8bc6\u522b\u51fa\u73b0\u9891\u7387\u9ad8\u6216\u5904\u7406\u65f6\u95f4\u957f\u7684\u8bf7\u6c42\u3002<\/li>\n<\/ul>\n<\/li>\n<h5>\u4f7f\u7528\u65e5\u5fd7\u5206\u6790\u5de5\u5177<\/h5>\n<p>\u9664\u4e86\u624b\u52a8\u5206\u6790\u65e5\u5fd7&#xff0c;\u8fd8\u6709\u4e00\u4e9b\u5de5\u5177\u53ef\u4ee5\u5e2e\u52a9\u81ea\u52a8\u5316\u8fd9\u4e00\u8fc7\u7a0b&#xff0c;\u63d0\u9ad8\u6548\u7387&#xff1a;<\/p>\n<ul>\n<li>\n<p>GoAccess&#xff1a;\u9002\u7528\u4e8e\u5206\u6790Web\u8bbf\u95ee\u65e5\u5fd7&#xff0c;\u5982\u679c\u4f60\u6709HTTP\u8bbf\u95ee\u65e5\u5fd7&#xff0c;GoAccess \u53ef\u4ee5\u751f\u6210\u5b9e\u65f6\u3001\u4ea4\u4e92\u5f0f\u7684Web\u62a5\u544a\u3002<\/p>\n<\/li>\n<li>\n<p>ELK Stack&#xff1a;Elasticsearch, Logstash, \u548c Kibana \u7684\u7ec4\u5408\u662f\u4e00\u4e2a\u5f3a\u5927\u7684\u65e5\u5fd7\u5206\u6790\u5e73\u53f0&#xff0c;\u9002\u7528\u4e8e\u6536\u96c6\u3001\u641c\u7d22\u548c\u53ef\u89c6\u5316\u5927\u89c4\u6a21\u65e5\u5fd7\u6570\u636e\u3002\u4f60\u53ef\u4ee5\u914d\u7f6e Logstash \u6765\u89e3\u6790 Tomcat \u65e5\u5fd7&#xff0c;\u5e76\u4f7f\u7528 Kibana \u6765\u8fdb\u884c\u6df1\u5165\u5206\u6790\u548c\u53ef\u89c6\u5316\u3002<\/p>\n<\/li>\n<li>\n<p>Graylog&#xff1a;\u53e6\u4e00\u4e2a\u5f3a\u5927\u7684\u65e5\u5fd7\u7ba1\u7406\u548c\u5206\u6790\u5de5\u5177&#xff0c;\u53ef\u4ee5\u6536\u96c6\u3001\u7d22\u5f15\u548c\u5206\u6790\u4efb\u4f55\u673a\u5668\u4ea7\u751f\u7684\u65e5\u5fd7\u3002<\/p>\n<\/li>\n<\/ul>\n<p>\u5f53\u5206\u6790 Tomcat \u65e5\u5fd7\u65f6&#xff0c;\u91cd\u70b9\u5173\u6ce8\u9519\u8bef\u3001\u5f02\u5e38\u3001\u6162\u67e5\u8be2\u548c\u6027\u80fd\u74f6\u9888\u3002\u4f7f\u7528\u5408\u9002\u7684\u5de5\u5177\u548c\u7b56\u7565\u53ef\u4ee5\u5e2e\u52a9\u4f60\u66f4\u6709\u6548\u5730\u7ba1\u7406\u548c\u4f18\u5316 Tomcat \u670d\u52a1\u5668\u3002<\/p>\n<h4>13.\u5982\u4f55\u5bf9Python\u591a\u8fdb\u7a0b\u65e5\u5fd7\u8f93\u51fa\u6309\u65e5\u671f\u5207\u5272 &#xff1f;<\/h4>\n<p>\u5728 Python \u4e2d\u5bf9\u591a\u8fdb\u7a0b\u65e5\u5fd7\u8f93\u51fa\u8fdb\u884c\u6309\u65e5\u671f\u5207\u5272&#xff0c;\u53ef\u4ee5\u4f7f\u7528 logging \u6a21\u5757\u914d\u5408 TimedRotatingFileHandler\u3002\u8fd9\u79cd\u5904\u7406\u5668\u53ef\u4ee5\u6839\u636e\u65f6\u95f4\u81ea\u52a8\u5206\u5272\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u975e\u5e38\u9002\u5408\u6309\u65e5\u671f\u5207\u5272\u65e5\u5fd7\u7684\u9700\u6c42\u3002\u4e0b\u9762\u662f\u4e00\u4e2a\u57fa\u672c\u7684\u793a\u4f8b&#xff0c;\u5c55\u793a\u4e86\u5982\u4f55\u8bbe\u7f6e\u4e00\u4e2a\u6309\u5929\u5207\u5272\u65e5\u5fd7\u7684\u914d\u7f6e&#xff1a;<\/p>\n<h5>\u793a\u4f8b\u4ee3\u7801<\/h5>\n<p><span class=\"token keyword\">import<\/span> logging<br \/>\n<span class=\"token keyword\">import<\/span> logging<span class=\"token punctuation\">.<\/span>handlers<br \/>\n<span class=\"token keyword\">import<\/span> multiprocessing<br \/>\n<span class=\"token keyword\">import<\/span> time<\/p>\n<p><span class=\"token keyword\">def<\/span> <span class=\"token function\">worker_process<\/span><span class=\"token punctuation\">(<\/span><span class=\"token punctuation\">)<\/span><span class=\"token punctuation\">:<\/span><br \/>\n    logger <span class=\"token operator\">&#061;<\/span> logging<span class=\"token punctuation\">.<\/span>getLogger<span class=\"token punctuation\">(<\/span><span class=\"token string\">&#039;MyLogger&#039;<\/span><span class=\"token punctuation\">)<\/span><br \/>\n    logger<span class=\"token punctuation\">.<\/span>setLevel<span class=\"token punctuation\">(<\/span>logging<span class=\"token punctuation\">.<\/span>DEBUG<span class=\"token punctuation\">)<\/span><br \/>\n    <span class=\"token keyword\">for<\/span> i <span class=\"token keyword\">in<\/span> <span class=\"token builtin\">range<\/span><span class=\"token punctuation\">(<\/span><span class=\"token number\">5<\/span><span class=\"token punctuation\">)<\/span><span class=\"token punctuation\">:<\/span><br \/>\n        logger<span class=\"token punctuation\">.<\/span>debug<span class=\"token punctuation\">(<\/span><span class=\"token string-interpolation\"><span class=\"token string\">f&#034;Debug message <\/span><span class=\"token interpolation\"><span class=\"token punctuation\">{<\/span>i<span class=\"token punctuation\">}<\/span><\/span><span class=\"token string\"> from process <\/span><span class=\"token interpolation\"><span class=\"token punctuation\">{<\/span>multiprocessing<span class=\"token punctuation\">.<\/span>current_process<span class=\"token punctuation\">(<\/span><span class=\"token punctuation\">)<\/span><span class=\"token punctuation\">.<\/span>name<span class=\"token punctuation\">}<\/span><\/span><span class=\"token string\">&#034;<\/span><\/span><span class=\"token punctuation\">)<\/span><br \/>\n        time<span class=\"token punctuation\">.<\/span>sleep<span class=\"token punctuation\">(<\/span><span class=\"token number\">1<\/span><span class=\"token punctuation\">)<\/span><\/p>\n<p><span class=\"token keyword\">if<\/span> __name__ <span class=\"token operator\">&#061;&#061;<\/span> <span class=\"token string\">&#039;__main__&#039;<\/span><span class=\"token punctuation\">:<\/span><br \/>\n    <span class=\"token comment\"># \u8bbe\u7f6e\u65e5\u5fd7\u683c\u5f0f<\/span><br \/>\n    logFormatter <span class=\"token operator\">&#061;<\/span> logging<span class=\"token punctuation\">.<\/span>Formatter<span class=\"token punctuation\">(<\/span><span class=\"token string\">&#039;%(asctime)s &#8211; %(name)s &#8211; %(levelname)s &#8211; %(message)s&#039;<\/span><span class=\"token punctuation\">)<\/span><\/p>\n<p>    <span class=\"token comment\"># \u521b\u5efa TimedRotatingFileHandler \u5bf9\u8c61<\/span><br \/>\n    logHandler <span class=\"token operator\">&#061;<\/span> logging<span class=\"token punctuation\">.<\/span>handlers<span class=\"token punctuation\">.<\/span>TimedRotatingFileHandler<span class=\"token punctuation\">(<\/span><span class=\"token string\">&#039;multiprocess_log&#039;<\/span><span class=\"token punctuation\">,<\/span> when<span class=\"token operator\">&#061;<\/span><span class=\"token string\">&#039;midnight&#039;<\/span><span class=\"token punctuation\">,<\/span> interval<span class=\"token operator\">&#061;<\/span><span class=\"token number\">1<\/span><span class=\"token punctuation\">,<\/span> backupCount<span class=\"token operator\">&#061;<\/span><span class=\"token number\">5<\/span><span class=\"token punctuation\">)<\/span><br \/>\n    logHandler<span class=\"token punctuation\">.<\/span>setFormatter<span class=\"token punctuation\">(<\/span>logFormatter<span class=\"token punctuation\">)<\/span><\/p>\n<p>    <span class=\"token comment\"># \u6dfb\u52a0\u5904\u7406\u5668\u5230\u6839\u65e5\u5fd7\u5668<\/span><br \/>\n    logger <span class=\"token operator\">&#061;<\/span> logging<span class=\"token punctuation\">.<\/span>getLogger<span class=\"token punctuation\">(<\/span><span class=\"token string\">&#039;MyLogger&#039;<\/span><span class=\"token punctuation\">)<\/span><br \/>\n    logger<span class=\"token punctuation\">.<\/span>setLevel<span class=\"token punctuation\">(<\/span>logging<span class=\"token punctuation\">.<\/span>DEBUG<span class=\"token punctuation\">)<\/span><br \/>\n    logger<span class=\"token punctuation\">.<\/span>addHandler<span class=\"token punctuation\">(<\/span>logHandler<span class=\"token punctuation\">)<\/span><\/p>\n<p>    <span class=\"token comment\"># \u521b\u5efa\u8fdb\u7a0b<\/span><br \/>\n    processes <span class=\"token operator\">&#061;<\/span> <span class=\"token punctuation\">[<\/span>multiprocessing<span class=\"token punctuation\">.<\/span>Process<span class=\"token punctuation\">(<\/span>target<span class=\"token operator\">&#061;<\/span>worker_process<span class=\"token punctuation\">,<\/span> name<span class=\"token operator\">&#061;<\/span><span class=\"token string-interpolation\"><span class=\"token string\">f&#034;Worker <\/span><span class=\"token interpolation\"><span class=\"token punctuation\">{<\/span>i<span class=\"token punctuation\">}<\/span><\/span><span class=\"token string\">&#034;<\/span><\/span><span class=\"token punctuation\">)<\/span> <span class=\"token keyword\">for<\/span> i <span class=\"token keyword\">in<\/span> <span class=\"token builtin\">range<\/span><span class=\"token punctuation\">(<\/span><span class=\"token number\">5<\/span><span class=\"token punctuation\">)<\/span><span class=\"token punctuation\">]<\/span><\/p>\n<p>    <span class=\"token comment\"># \u542f\u52a8\u8fdb\u7a0b<\/span><br \/>\n    <span class=\"token keyword\">for<\/span> p <span class=\"token keyword\">in<\/span> processes<span class=\"token punctuation\">:<\/span><br \/>\n        p<span class=\"token punctuation\">.<\/span>start<span class=\"token punctuation\">(<\/span><span class=\"token punctuation\">)<\/span><\/p>\n<p>    <span class=\"token comment\"># \u7b49\u5f85\u6240\u6709\u8fdb\u7a0b\u5b8c\u6210<\/span><br \/>\n    <span class=\"token keyword\">for<\/span> p <span class=\"token keyword\">in<\/span> processes<span class=\"token punctuation\">:<\/span><br \/>\n        p<span class=\"token punctuation\">.<\/span>join<span class=\"token punctuation\">(<\/span><span class=\"token punctuation\">)<\/span><\/p>\n<h5>\u5173\u952e\u70b9\u8bf4\u660e<\/h5>\n<ul>\n<li>\n<p>TimedRotatingFileHandler: \u8fd9\u4e2a\u65e5\u5fd7\u5904\u7406\u5668\u5141\u8bb8\u65e5\u5fd7\u6587\u4ef6\u6309\u7167\u4e00\u5b9a\u7684\u65f6\u95f4\u95f4\u9694&#xff08;\u5982\u6bcf\u5929\u3001\u6bcf\u5c0f\u65f6&#xff09;\u8fdb\u884c\u8f6e\u8f6c\u3002\u5728\u4e0a\u9762\u7684\u4ee3\u7801\u4e2d&#xff0c;when&#061;&#039;midnight&#039; \u548c interval&#061;1 \u914d\u7f6e\u8868\u793a\u65e5\u5fd7\u6587\u4ef6\u5c06\u5728\u6bcf\u5929\u5348\u591c\u65f6\u5207\u5272&#xff0c;backupCount&#061;5 \u8868\u793a\u6700\u591a\u4fdd\u7559 5 \u4e2a\u65e7\u65e5\u5fd7\u6587\u4ef6\u3002<\/p>\n<\/li>\n<li>\n<p>\u8fdb\u7a0b\u5b89\u5168: \u5f53\u4f7f\u7528\u591a\u8fdb\u7a0b\u65f6&#xff0c;\u6bcf\u4e2a\u8fdb\u7a0b\u4f1a\u72ec\u7acb\u5730\u5199\u5165\u65e5\u5fd7\u6587\u4ef6\u3002TimedRotatingFileHandler \u8bbe\u8ba1\u4e3a\u5c3d\u53ef\u80fd\u5728\u591a\u8fdb\u7a0b\u73af\u5883\u4e2d\u5b89\u5168\u4f7f\u7528&#xff0c;\u4f46\u5728\u6781\u7aef\u60c5\u51b5\u4e0b\u53ef\u80fd\u4ecd\u7136\u5b58\u5728\u6587\u4ef6\u7ade\u4e89\u95ee\u9898\u3002Python \u5b98\u65b9\u6587\u6863\u5efa\u8bae\u5728\u591a\u8fdb\u7a0b\u73af\u5883\u4e2d\u8003\u8651\u4f7f\u7528\u5916\u90e8\u65e5\u5fd7\u5b88\u62a4\u8fdb\u7a0b&#xff08;\u5982 syslogd&#xff09;\u6216\u5176\u4ed6\u7b56\u7565\u6765\u907f\u514d\u6f5c\u5728\u7684\u6587\u4ef6\u9501\u95ee\u9898\u3002<\/p>\n<\/li>\n<li>\n<p>\u65e5\u5fd7\u683c\u5f0f: logFormatter \u5b9a\u4e49\u4e86\u65e5\u5fd7\u6d88\u606f\u7684\u683c\u5f0f&#xff0c;\u5305\u62ec\u65f6\u95f4\u6233\u3001\u65e5\u5fd7\u5668\u540d\u79f0\u3001\u65e5\u5fd7\u7ea7\u522b\u548c\u6d88\u606f\u672c\u8eab&#xff0c;\u786e\u4fdd\u65e5\u5fd7\u6587\u4ef6\u4e2d\u7684\u6761\u76ee\u65e2\u4e30\u5bcc\u53c8\u6613\u4e8e\u9605\u8bfb\u3002<\/p>\n<\/li>\n<\/ul>\n<p>\u8fd9\u4e2a\u793a\u4f8b\u63d0\u4f9b\u4e86\u4e00\u4e2a\u57fa\u672c\u6846\u67b6&#xff0c;\u7528\u4e8e\u5728 Python \u5e94\u7528\u7a0b\u5e8f\u4e2d\u5b9e\u73b0\u591a\u8fdb\u7a0b\u65e5\u5fd7\u8bb0\u5f55\u5e76\u6309\u65e5\u671f\u81ea\u52a8\u5207\u5272\u65e5\u5fd7\u6587\u4ef6\u3002\u4f60\u53ef\u4ee5\u6839\u636e\u5b9e\u9645\u9700\u6c42\u8c03\u6574\u65e5\u5fd7\u7ea7\u522b\u3001\u683c\u5f0f\u548c\u8f6e\u8f6c\u7b56\u7565\u3002<\/p>\n<h4>14.\u7b80\u8ff0\u4ec0\u4e48\u662ffilebeat &#xff0c;\u4ee5\u53ca\u600e\u4e48\u5b9e\u73b0\u65e5\u5fd7\u6570\u636e\u5206\u6790 &#xff1f;<\/h4>\n<h5>\u4ec0\u4e48\u662f Filebeat&#xff1f;<\/h5>\n<p>Filebeat \u662f Elastic Stack&#xff08;\u4ee5\u524d\u79f0\u4e3a ELK Stack&#xff09;\u7684\u4e00\u90e8\u5206&#xff0c;\u662f\u4e00\u4e2a\u8f7b\u91cf\u7ea7\u7684\u65e5\u5fd7\u6587\u4ef6\u91c7\u96c6\u5668\u3002\u4e3b\u8981\u7528\u4e8e\u5411 Elasticsearch \u6216 Logstash \u53d1\u9001\u65e5\u5fd7\u6587\u4ef6\u6216\u76d1\u63a7\u6570\u636e\u3002\u5b83\u662f\u4ee5\u4ee3\u7406\u7684\u5f62\u5f0f\u5b89\u88c5\u5728\u670d\u52a1\u5668\u4e0a&#xff0c;\u76d1\u63a7\u6307\u5b9a\u7684\u65e5\u5fd7\u6587\u4ef6\u6216\u4f4d\u7f6e&#xff0c;\u6536\u96c6\u65e5\u5fd7\u4fe1\u606f&#xff0c;\u5e76\u5c06\u8fd9\u4e9b\u4fe1\u606f\u8f6c\u53d1\u5230 Elasticsearch \u6216 Logstash \u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406\u548c\u5206\u6790\u3002<\/p>\n<p>Filebeat \u8bbe\u8ba1\u7528\u6765\u8f7b\u91cf\u7ea7\u5904\u7406\u524d\u7aef\u65e5\u5fd7\u6536\u96c6\u4efb\u52a1&#xff0c;\u51cf\u5c11\u7cfb\u7edf\u8d44\u6e90\u7684\u5360\u7528&#xff0c;\u5e76\u4fdd\u6301\u5ba2\u6237\u7aef\u7684\u7b80\u5355\u3002Filebeat \u652f\u6301\u591a\u79cd\u7c7b\u578b\u7684\u65e5\u5fd7\u6570\u636e\u91c7\u96c6&#xff0c;\u5305\u62ec\u7cfb\u7edf\u65e5\u5fd7\u3001\u5e94\u7528\u65e5\u5fd7\u3001\u548c\u6765\u81ea\u6587\u4ef6\u7684\u4efb\u4f55\u6587\u672c\u6570\u636e\u3002<\/p>\n<h5>Filebeat \u7684\u5de5\u4f5c\u539f\u7406<\/h5>\n<ul>\n<li>\u76d1\u63a7: Filebeat \u76d1\u63a7\u914d\u7f6e\u6587\u4ef6\u4e2d\u6307\u5b9a\u7684\u65e5\u5fd7\u6587\u4ef6\u6216\u4f4d\u7f6e&#xff0c;\u7b49\u5f85\u6587\u4ef6\u53d8\u5316\u3002<\/li>\n<li>\u6536\u96c6: \u5f53\u76d1\u63a7\u7684\u6587\u4ef6\u6709\u66f4\u65b0\u65f6&#xff0c;Filebeat \u8bfb\u53d6\u65b0\u589e\u7684\u65e5\u5fd7\u884c\u3002<\/li>\n<li>\u8f93\u51fa: Filebeat \u5c06\u6536\u96c6\u5230\u7684\u65e5\u5fd7\u6570\u636e\u53d1\u9001\u5230\u7528\u6237\u914d\u7f6e\u7684\u8f93\u51fa\u4f4d\u7f6e&#xff0c;\u901a\u5e38\u662f Elasticsearch \u6216 Logstash\u3002\u5982\u679c\u914d\u7f6e\u4e86 Logstash&#xff0c;Logstash \u53ef\u4ee5\u8fdb\u4e00\u6b65\u5904\u7406\u6570\u636e&#xff08;\u5982\u8fc7\u6ee4\u3001\u8f6c\u6362&#xff09;\u540e\u518d\u5c06\u6570\u636e\u5b58\u50a8\u5230 Elasticsearch\u3002<\/li>\n<\/ul>\n<h5>\u5982\u4f55\u5b9e\u73b0\u65e5\u5fd7\u6570\u636e\u5206\u6790<\/h5>\n<li>\n<p>\u5b89\u88c5\u548c\u914d\u7f6e Filebeat:<\/p>\n<ul>\n<li>\u5728\u9700\u8981\u6536\u96c6\u65e5\u5fd7\u7684\u670d\u52a1\u5668\u4e0a\u5b89\u88c5 Filebeat\u3002<\/li>\n<li>\u914d\u7f6e Filebeat&#xff0c;\u6307\u5b9a\u8981\u76d1\u63a7\u7684\u65e5\u5fd7\u6587\u4ef6\u8def\u5f84\u548c\u8f93\u51fa\u76ee\u6807&#xff08;Elasticsearch \u6216 Logstash&#xff09;\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>\u914d\u7f6e Elasticsearch \u548c Kibana (\u5982\u679c\u76f4\u63a5\u53d1\u9001\u5230 Elasticsearch):<\/p>\n<ul>\n<li>\u786e\u4fdd Elasticsearch \u8fd0\u884c\u4e2d&#xff0c;\u4ee5\u4fbf Filebeat \u53ef\u4ee5\u53d1\u9001\u6570\u636e\u5230\u5176\u4e2d\u3002<\/li>\n<li>\u914d\u7f6e Kibana \u4ee5\u8fde\u63a5\u5230 Elasticsearch&#xff0c;\u7528\u4e8e\u65e5\u5fd7\u6570\u636e\u7684\u53ef\u89c6\u5316\u548c\u5206\u6790\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>\u4f7f\u7528 Logstash \u8fdb\u884c\u6570\u636e\u5904\u7406 (\u53ef\u9009):<\/p>\n<ul>\n<li>\u5982\u679c\u9700\u8981\u5bf9\u65e5\u5fd7\u6570\u636e\u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406&#xff0c;\u6bd4\u5982\u89e3\u6790\u3001\u8f6c\u6362\u6216\u4e30\u5bcc\u6570\u636e&#xff0c;\u53ef\u4ee5\u5c06 Filebeat \u914d\u7f6e\u4e3a\u5c06\u6570\u636e\u53d1\u9001\u5230 Logstash\u3002<\/li>\n<li>\u5728 Logstash \u4e2d\u5b9a\u4e49\u8fc7\u6ee4\u5668\u6765\u5904\u7406\u548c\u8f6c\u6362\u6570\u636e&#xff0c;\u7136\u540e\u8f93\u51fa\u5230 Elasticsearch\u3002<\/li>\n<\/ul>\n<\/li>\n<li>\n<p>\u5206\u6790\u548c\u53ef\u89c6\u5316:<\/p>\n<ul>\n<li>\u4f7f\u7528 Kibana \u521b\u5efa\u4eea\u8868\u677f\u548c\u53ef\u89c6\u5316\u56fe\u8868&#xff0c;\u4ee5\u5206\u6790\u548c\u7406\u89e3\u65e5\u5fd7\u6570\u636e\u3002<\/li>\n<li>Kibana \u63d0\u4f9b\u4e86\u4e30\u5bcc\u7684\u56fe\u8868\u7c7b\u578b\u548c\u641c\u7d22\u80fd\u529b&#xff0c;\u652f\u6301\u6df1\u5165\u5206\u6790\u65e5\u5fd7\u6570\u636e&#xff0c;\u5982\u67e5\u770b\u8bbf\u95ee\u8d8b\u52bf\u3001\u9519\u8bef\u65e5\u5fd7\u5206\u6790\u7b49\u3002<\/li>\n<\/ul>\n<\/li>\n<h5>\u603b\u7ed3<\/h5>\n<p>Filebeat \u662f\u4e00\u4e2a\u9ad8\u6548\u7684\u65e5\u5fd7\u91c7\u96c6\u5de5\u5177&#xff0c;\u80fd\u591f\u7b80\u5316\u65e5\u5fd7\u6570\u636e\u7684\u6536\u96c6\u548c\u4f20\u8f93\u8fc7\u7a0b\u3002\u901a\u8fc7\u4e0e Elasticsearch \u548c Kibana \u7684\u96c6\u6210&#xff0c;Filebeat \u4e3a\u65e5\u5fd7\u6570\u636e\u5206\u6790\u63d0\u4f9b\u4e86\u4e00\u4e2a\u5f3a\u5927\u7684\u89e3\u51b3\u65b9\u6848&#xff0c;\u4f7f\u5f97\u76d1\u63a7\u548c\u5206\u6790\u65e5\u5fd7\u6570\u636e\u53d8\u5f97\u66f4\u52a0\u5bb9\u6613\u548c\u6709\u6548\u3002\u4f7f\u7528 Filebeat&#xff0c;\u53ef\u4ee5\u8f7b\u677e\u5b9e\u73b0\u5b9e\u65f6\u65e5\u5fd7\u76d1\u63a7\u548c\u590d\u6742\u7684\u65e5\u5fd7\u5206\u6790\u4efb\u52a1&#xff0c;\u5e2e\u52a9\u5f00\u53d1\u4eba\u5458\u548c\u7cfb\u7edf\u7ba1\u7406\u5458\u53ca\u65f6\u53d1\u73b0\u548c\u89e3\u51b3\u95ee\u9898\u3002<\/p>\n<h4>15.MongoDB \u65e5\u5fd7\u8fc7\u5927\u95ee\u9898\u89e3\u51b3\u65b9\u6cd5&#xff1f;<\/h4>\n<p>MongoDB \u65e5\u5fd7\u6587\u4ef6\u8fc7\u5927\u53ef\u80fd\u4f1a\u5bfc\u81f4\u78c1\u76d8\u7a7a\u95f4\u4e0d\u8db3&#xff0c;\u5f71\u54cd\u6570\u636e\u5e93\u6027\u80fd\u548c\u7a33\u5b9a\u6027\u3002\u4ee5\u4e0b\u662f\u51e0\u79cd\u89e3\u51b3 MongoDB \u65e5\u5fd7\u8fc7\u5927\u95ee\u9898\u7684\u65b9\u6cd5&#xff1a;<\/p>\n<h5>1. \u65e5\u5fd7\u8f6e\u8f6c<\/h5>\n<p>MongoDB \u652f\u6301\u65e5\u5fd7\u8f6e\u8f6c&#xff0c;\u5141\u8bb8\u4f60\u5728\u4e0d\u505c\u6b62\u6570\u636e\u5e93\u670d\u52a1\u7684\u60c5\u51b5\u4e0b\u5173\u95ed\u5f53\u524d\u65e5\u5fd7\u6587\u4ef6\u5e76\u5f00\u542f\u4e00\u4e2a\u65b0\u7684\u65e5\u5fd7\u6587\u4ef6\u3002\u53ef\u4ee5\u901a\u8fc7\u53d1\u9001 logRotate \u547d\u4ee4\u5230 MongoDB \u5b9e\u4f8b\u6765\u5b9e\u73b0&#xff1a;<\/p>\n<p>mongo <span class=\"token parameter variable\">&#8211;eval<\/span> <span class=\"token string\">&#034;db.adminCommand({logRotate: 1})&#034;<\/span><\/p>\n<p>\u8fd9\u4e2a\u547d\u4ee4\u4f1a\u5bfc\u81f4 MongoDB \u5173\u95ed\u5f53\u524d\u7684\u65e5\u5fd7\u6587\u4ef6\u5e76\u7acb\u5373\u5f00\u59cb\u4e00\u4e2a\u65b0\u7684\u65e5\u5fd7\u6587\u4ef6\u3002\u8fd9\u5bf9\u4e8e\u63a7\u5236\u65e5\u5fd7\u6587\u4ef6\u5927\u5c0f\u975e\u5e38\u6709\u7528&#xff0c;\u7279\u522b\u662f\u5f53\u4f60\u8ba1\u5212\u901a\u8fc7\u5916\u90e8\u5de5\u5177\u6216\u811a\u672c\u5b9a\u671f\u6267\u884c\u65e5\u5fd7\u8f6e\u8f6c\u65f6\u3002<\/p>\n<h5>2. \u8c03\u6574\u65e5\u5fd7\u8bb0\u5f55\u7ea7\u522b<\/h5>\n<p>\u51cf\u5c11\u65e5\u5fd7\u6587\u4ef6\u7684\u5927\u5c0f\u53ef\u4ee5\u901a\u8fc7\u51cf\u5c11\u65e5\u5fd7\u8bb0\u5f55\u7684\u8be6\u7ec6\u7a0b\u5ea6\u6765\u5b9e\u73b0\u3002MongoDB \u5141\u8bb8\u4f60\u8c03\u6574\u65e5\u5fd7\u8bb0\u5f55\u7ea7\u522b&#xff0c;\u5305\u62ec\u5bf9\u6574\u4f53\u6570\u636e\u5e93\u548c\u7279\u5b9a\u7ec4\u4ef6\u7684\u65e5\u5fd7\u7ea7\u522b\u3002\u901a\u8fc7\u51cf\u5c11\u65e5\u5fd7\u8bb0\u5f55\u7684\u8be6\u7ec6\u7a0b\u5ea6&#xff0c;\u53ef\u4ee5\u51cf\u5c0f\u65e5\u5fd7\u6587\u4ef6\u7684\u5927\u5c0f\u3002\u8c03\u6574\u65e5\u5fd7\u7ea7\u522b\u53ef\u4ee5\u901a\u8fc7 MongoDB \u7684\u914d\u7f6e\u6587\u4ef6 (mongod.conf) \u8fdb\u884c&#xff1a;<\/p>\n<p><span class=\"token key atrule\">systemLog<\/span><span class=\"token punctuation\">:<\/span><br \/>\n  <span class=\"token key atrule\">verbosity<\/span><span class=\"token punctuation\">:<\/span> <span class=\"token number\">1<\/span><\/p>\n<p>\u6216\u8005\u901a\u8fc7\u8fd0\u884c\u65f6\u914d\u7f6e\u6765\u8c03\u6574&#xff1a;<\/p>\n<p>db.setLogLevel<span class=\"token punctuation\">(<\/span><span class=\"token number\">1<\/span><span class=\"token punctuation\">)<\/span><\/p>\n<h5>3. \u4f7f\u7528\u5916\u90e8\u65e5\u5fd7\u8f6e\u8f6c\u5de5\u5177<\/h5>\n<p>\u9664\u4e86 MongoDB \u81ea\u5e26\u7684\u65e5\u5fd7\u8f6e\u8f6c\u529f\u80fd&#xff0c;\u4f60\u8fd8\u53ef\u4ee5\u4f7f\u7528\u5982 logrotate \u8fd9\u6837\u7684 Linux \u5de5\u5177\u6765\u7ba1\u7406\u65e5\u5fd7\u6587\u4ef6\u3002\u901a\u8fc7\u4e3a MongoDB \u65e5\u5fd7\u914d\u7f6e logrotate&#xff0c;\u4f60\u53ef\u4ee5\u81ea\u52a8\u538b\u7f29\u3001\u8f6e\u8f6c\u548c\u5220\u9664\u65e7\u7684\u65e5\u5fd7\u6587\u4ef6&#xff0c;\u4ee5\u63a7\u5236\u78c1\u76d8\u7a7a\u95f4\u7684\u4f7f\u7528\u3002<\/p>\n<p>\u4e00\u4e2a\u57fa\u672c\u7684 logrotate \u914d\u7f6e\u793a\u4f8b\u53ef\u80fd\u5982\u4e0b\u6240\u793a&#xff08;\u5047\u8bbe MongoDB \u65e5\u5fd7\u6587\u4ef6\u4f4d\u4e8e \/var\/log\/mongodb\/mongod.log&#xff09;&#xff1a;<\/p>\n<p>\/var\/log\/mongodb\/mongod.log <span class=\"token punctuation\">{<\/span><br \/>\n    daily<br \/>\n    rotate <span class=\"token number\">7<\/span><br \/>\n    compress<br \/>\n    delaycompress<br \/>\n    missingok<br \/>\n    notifempty<br \/>\n    create <span class=\"token number\">640<\/span> mongodb mongodb<br \/>\n    postrotate<br \/>\n        \/usr\/bin\/mongo <span class=\"token parameter variable\">&#8211;eval<\/span> <span class=\"token string\">&#034;db.adminCommand({logRotate: 1})&#034;<\/span><br \/>\n    endscript<br \/>\n<span class=\"token punctuation\">}<\/span><\/p>\n<h5>4. \u4f18\u5316\u65e5\u5fd7\u5b58\u50a8<\/h5>\n<p>\u8003\u8651\u5c06 MongoDB \u7684\u65e5\u5fd7\u6587\u4ef6\u5b58\u50a8\u5728\u4e0d\u540c\u7684\u78c1\u76d8\u6216\u5206\u533a\u4e0a&#xff0c;\u7279\u522b\u662f\u5f53\u4f60\u7684\u4e3b\u6570\u636e\u5e93\u78c1\u76d8\u7a7a\u95f4\u6709\u9650\u65f6\u3002\u8fd9\u6709\u52a9\u4e8e\u907f\u514d\u65e5\u5fd7\u6587\u4ef6\u5360\u7528\u8fc7\u591a\u7684\u4e3b\u8981\u5b58\u50a8\u7a7a\u95f4&#xff0c;\u540c\u65f6\u4e5f\u53ef\u4ee5\u63d0\u9ad8\u5199\u5165\u6027\u80fd\u3002<\/p>\n<h5>5. \u6e05\u7406\u65e7\u7684\u65e5\u5fd7\u6587\u4ef6<\/h5>\n<p>\u5b9a\u671f\u68c0\u67e5 MongoDB \u7684\u65e5\u5fd7\u76ee\u5f55&#xff0c;\u5e76\u6e05\u7406\u4e0d\u518d\u9700\u8981\u7684\u65e7\u65e5\u5fd7\u6587\u4ef6\u3002\u53ef\u4ee5\u624b\u52a8\u6267\u884c\u6b64\u64cd\u4f5c&#xff0c;\u6216\u8005\u901a\u8fc7\u811a\u672c\u81ea\u52a8\u5316\u3002<\/p>\n<h5>\u7ed3\u8bba<\/h5>\n<p>\u5408\u7406\u7ba1\u7406 MongoDB \u7684\u65e5\u5fd7\u6587\u4ef6\u4e0d\u4ec5\u53ef\u4ee5\u907f\u514d\u78c1\u76d8\u7a7a\u95f4\u4e0d\u8db3\u7684\u95ee\u9898&#xff0c;\u8fd8\u53ef\u4ee5\u5e2e\u52a9\u7ef4\u62a4\u6570\u636e\u5e93\u7684\u6027\u80fd\u548c\u7a33\u5b9a\u6027\u3002\u901a\u8fc7\u5b9e\u65bd\u4e0a\u8ff0\u7b56\u7565\u4e4b\u4e00\u6216\u7ec4\u5408\u4f7f\u7528&#xff0c;\u53ef\u4ee5\u6709\u6548\u63a7\u5236\u65e5\u5fd7\u6587\u4ef6\u7684\u5927\u5c0f\u3002<\/p>\n<p>\u7531\u4e8e\u5185\u5bb9\u592a\u591a&#xff0c;\u66f4\u591a\u5185\u5bb9\u4ee5\u94fe\u63a5\u5f62\u52bf\u7ed9\u5927\u5bb6&#xff0c;\u70b9\u51fb\u8fdb\u53bb\u5c31\u662f\u7b54\u6848\u4e86<\/p>\n<p>16. \u5982\u4f55\u76d1\u63a7\u67d0Linux\u6587\u4ef6\u7684\u53d8\u5316 &#xff1f;<\/p>\n<p>17. \u5982\u4f55\u5229\u7528Shell\u811a\u672c\u6e05\u7406\u65e5\u5fd7\u6587\u4ef6 &#xff1f;<\/p>\n<p>18. \u5982\u4f55\u5b9e\u73b0Python\u65e5\u5fd7\u8f93\u51fa\u5230\u6587\u4ef6 &#xff1f;<\/p>\n<p>19. Linux\u4e0b\u5982\u4f55\u83b7\u53d6\u548c\u4fee\u6539\u5f53\u524d\u65e5\u5fd7\u7ea7\u522b &#xff1f;<\/p>\n<p>20. \u5982\u4f55\u5c06Nginx\u65e5\u5fd7\u6309\u65e5\u671f\u5207\u5272\u8be6\u89e3&#xff08;\u6309\u5929\u5207\u5272&#xff09; &#xff1f;<\/p>\n<p>21. Mysql binlog\u65e5\u5fd7\u81ea\u52a8\u6e05\u7406\u53ca\u624b\u52a8\u5220\u9664?<\/p>\n<p>22. \u7b80\u8ff0\u5982\u4f55\u4f7f\u7528 Symbolicatecrash\u8f6c\u5316crash\u65e5\u5fd7?<\/p>\n<p>23. \u7b80\u8ff0Oracle\u65e5\u5fd7\u6316\u6398\u4f7f\u7528\u4ec0\u4e48\u5de5\u5177 &#xff1f;<\/p>\n<p>24. \u5982\u4f55\u4f7f\u7528Logrotate\u8f6e\u8be2Nginx\u65e5\u5fd7&#xff1f;<\/p>\n<p>25. \u7b80\u8ff0Log\u65e5\u5fd7\u67095G,\u5982\u4f55\u6253\u5f00?<\/p>\n<p>26. \u8be6\u7ec6\u9610\u8ff0Linux \u5982\u4f55\u642d\u5efaELK\u65e5\u5fd7\u6536\u96c6\u7cfb\u7edf &#xff1f;<\/p>\n<p>27. Linux\u600e\u4e48\u5220\u9664\u6e05\u7a7a\u65e5\u5fd7&#xff1f;<\/p>\n<p>28. \u7b80\u8ff0Linux \u5b95\u673a\u65e5\u5fd7\u5728\u54ea&#xff1f;<\/p>\n<p>29. Linux\u600e\u4e48\u67e5\u8be2Oracle\u9519\u8bef\u65e5\u5fd7&#xff1f;<\/p>\n<p>30. \u7b80\u8ff0Linux\u5982\u4f55\u67e5\u770b\u767b\u5f55\u65e5\u5fd7 &#xff1f;<\/p>\n<p>31. \u7b80\u8ff0Linux\u4e0b\u67e5\u770bPHP\u9519\u8bef\u65e5\u5fd7\u7684\u4f4d\u7f6e\u7684\u65b9\u6cd5?<\/p>\n<p>32. \u7b80\u8ff0Linux\u7cfb\u7edf\u65e5\u5fd7\u6587\u4ef6\u5305\u542b\u51e0\u5217\u5185\u5bb9 &#xff1f;<\/p>\n<p>33. \u7b80\u8ff0Linux crontab \u9519\u8bef\u65e5\u5fd7\u600e\u4e48\u67e5\u770b&#xff1f;<\/p>\n<p>34. \u7b80\u8ff0\u6709\u4e24\u53f0\u6e38\u620f\u670d\u52a1\u5668\u8fd0\u884c\u4e8elinux 2.6.x\u5185\u6838\u4e0a&#xff0c;\u9700\u8981\u540c\u6b65\u7528\u6237\u8bbf\u95ee\u65e5\u5fd7&#xff0c;\u4f60\u4f1a\u7528\u4e0b\u5217\u54ea\u4e9b\u65b9\u6cd5\u540c\u6b65\u65e5\u5fd7&#xff08;\u5f00\u653e\u9898&#xff1a;\u5047\u8bbe\u6743\u9650\u548c\u6761\u4ef6\u5747\u53ef\u6ee1\u8db3&#xff09; &#xff1f;<\/p>\n<p>35. \u7b80\u8ff0\u88ab\u9700\u8981\u68c0\u67e5\u7cfb\u7edf\u4e2d\u7684\u8bbe\u5907\u60c5\u51b5&#xff0c;\u9700\u8981\u68c0\u67e5\u54ea\u4e2alog\u65e5\u5fd7&#xff1f; &#xff1f;<\/p>\n<p>36. \u7b80\u8ff0\u4e0b\u5217\u54ea\u4e2a\u547d\u4ee4\u80fd\u67e5\u627e\u5f53\u524d\u76ee\u5f55\u4e00\u4e2a\u6708&#xff08;30\u5929&#xff09;\u4ee5\u524d\u5927\u4e8e 100M \u7684\u65e5\u5fd7\u6587\u4ef6&#xff08;.log&#xff09;\u5e76\u5220\u9664&#xff08;&#xff09; &#xff1f;<\/p>\n<p>37. \u5047\u8bbeApache\u4ea7\u751f\u7684\u65e5\u5fd7\u6587\u4ef6\u540d\u4e3aaccess_log,\u5728apache\u6b63\u5728\u8fd0\u884c\u65f6,\u6267\u884c\u547d\u4ee4mv access_log access_log.bak,\u6267\u884c\u5b8c\u540e,\u8bf7\u95ee\u65b0\u7684apache\u7684\u65e5\u5fd7\u4f1a\u6253\u5370\u5230\u54ea\u91cc&#xff0c;\u8bf7\u9009\u62e9\u4e0b\u5217\u63cf\u8ff0\u6b63\u786e\u7684\u662f&#xff1f; &#xff1f;<\/p>\n<p>38. \u4f60\u88ab\u9700\u8981\u68c0\u67e5\u7cfb\u7edf\u4e2d\u7684\u8bbe\u5907\u60c5\u51b5&#xff0c;\u9700\u8981\u68c0\u67e5\u54ea\u4e2alog\u65e5\u5fd7 &#xff1f;<\/p>\n<p>39. \u7b80\u8ff0bash\u4e2d&#xff0c;\u9700\u8981\u5c06\u811a\u672cdemo.sh\u7684\u6807\u51c6\u8f93\u51fa\u548c\u6807\u51c6\u9519\u8bef\u8f93\u51fa\u91cd\u5b9a\u5411\u81f3\u6587\u4ef6demo.log&#xff0c;\u4ee5\u4e0b\u54ea\u4e9b\u7528\u6cd5\u662f\u6b63\u786e\u7684 &#xff1f;<\/p>\n<p>40. \u7b80\u8ff0\u4ee5\u4e0b\u5bf9logcat \u547d\u4ee4\u63cf\u8ff0\u6b63\u786e\u7684\u662f &#xff1f;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u6587\u7ae0\u6d4f\u89c8\u9605\u8bfb217\u6b21\u3002Filebeat \u662f Elastic Stack\uff08\u4ee5\u524d\u79f0\u4e3a ELK Stack\uff09\u7684\u4e00\u90e8\u5206\uff0c\u662f\u4e00\u4e2a\u8f7b\u91cf\u7ea7\u7684\u65e5\u5fd7\u6587\u4ef6\u91c7\u96c6\u5668\u3002\u4e3b\u8981\u7528\u4e8e\u5411 Elasticsearch \u6216 Logstash \u53d1\u9001\u65e5\u5fd7\u6587\u4ef6\u6216\u76d1\u63a7\u6570\u636e\u3002\u5b83\u662f\u4ee5\u4ee3\u7406\u7684\u5f62\u5f0f\u5b89\u88c5\u5728\u670d\u52a1\u5668\u4e0a\uff0c\u76d1\u63a7\u6307\u5b9a\u7684\u65e5\u5fd7\u6587\u4ef6\u6216\u4f4d\u7f6e\uff0c\u6536\u96c6\u65e5\u5fd7\u4fe1\u606f\uff0c\u5e76\u5c06\u8fd9\u4e9b\u4fe1\u606f\u8f6c\u53d1\u5230 Elasticsearch \u6216 Logstash \u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406\u548c\u5206\u6790\u3002Filebeat \u8bbe\u8ba1\u7528\u6765\u8f7b\u91cf\u7ea7\u5904\u7406\u524d\u7aef\u65e5\u5fd7\u6536\u96c6\u4efb\u52a1\uff0c\u51cf\u5c11\u7cfb\u7edf\u8d44\u6e90\u7684\u5360\u7528\uff0c\u5e76\u4fdd\u6301\u5ba2\u6237\u7aef\u7684\u7b80\u5355\u3002<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[58,176],"topic":[],"class_list":["post-55998","post","type-post","status-publish","format-standard","hentry","category-server","tag-linux","tag-176"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.3 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.wsisp.com\/helps\/55998.html\" \/>\n<meta property=\"og:locale\" content=\"zh_CN\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3\" \/>\n<meta property=\"og:description\" content=\"\u6587\u7ae0\u6d4f\u89c8\u9605\u8bfb217\u6b21\u3002Filebeat \u662f Elastic Stack\uff08\u4ee5\u524d\u79f0\u4e3a ELK Stack\uff09\u7684\u4e00\u90e8\u5206\uff0c\u662f\u4e00\u4e2a\u8f7b\u91cf\u7ea7\u7684\u65e5\u5fd7\u6587\u4ef6\u91c7\u96c6\u5668\u3002\u4e3b\u8981\u7528\u4e8e\u5411 Elasticsearch \u6216 Logstash \u53d1\u9001\u65e5\u5fd7\u6587\u4ef6\u6216\u76d1\u63a7\u6570\u636e\u3002\u5b83\u662f\u4ee5\u4ee3\u7406\u7684\u5f62\u5f0f\u5b89\u88c5\u5728\u670d\u52a1\u5668\u4e0a\uff0c\u76d1\u63a7\u6307\u5b9a\u7684\u65e5\u5fd7\u6587\u4ef6\u6216\u4f4d\u7f6e\uff0c\u6536\u96c6\u65e5\u5fd7\u4fe1\u606f\uff0c\u5e76\u5c06\u8fd9\u4e9b\u4fe1\u606f\u8f6c\u53d1\u5230 Elasticsearch \u6216 Logstash \u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406\u548c\u5206\u6790\u3002Filebeat \u8bbe\u8ba1\u7528\u6765\u8f7b\u91cf\u7ea7\u5904\u7406\u524d\u7aef\u65e5\u5fd7\u6536\u96c6\u4efb\u52a1\uff0c\u51cf\u5c11\u7cfb\u7edf\u8d44\u6e90\u7684\u5360\u7528\uff0c\u5e76\u4fdd\u6301\u5ba2\u6237\u7aef\u7684\u7b80\u5355\u3002\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.wsisp.com\/helps\/55998.html\" \/>\n<meta property=\"og:site_name\" content=\"\u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3\" \/>\n<meta property=\"article:published_time\" content=\"2025-08-14T03:14:37+00:00\" \/>\n<meta name=\"author\" content=\"admin\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"\u4f5c\u8005\" \/>\n\t<meta name=\"twitter:data1\" content=\"admin\" \/>\n\t<meta name=\"twitter:label2\" content=\"\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4\" \/>\n\t<meta name=\"twitter:data2\" content=\"10 \u5206\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.wsisp.com\/helps\/55998.html\",\"url\":\"https:\/\/www.wsisp.com\/helps\/55998.html\",\"name\":\"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3\",\"isPartOf\":{\"@id\":\"https:\/\/www.wsisp.com\/helps\/#website\"},\"datePublished\":\"2025-08-14T03:14:37+00:00\",\"dateModified\":\"2025-08-14T03:14:37+00:00\",\"author\":{\"@id\":\"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/358e386c577a3ab51c4493330a20ad41\"},\"breadcrumb\":{\"@id\":\"https:\/\/www.wsisp.com\/helps\/55998.html#breadcrumb\"},\"inLanguage\":\"zh-Hans\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.wsisp.com\/helps\/55998.html\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.wsisp.com\/helps\/55998.html#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"\u9996\u9875\",\"item\":\"https:\/\/www.wsisp.com\/helps\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248)\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.wsisp.com\/helps\/#website\",\"url\":\"https:\/\/www.wsisp.com\/helps\/\",\"name\":\"\u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3\",\"description\":\"\u9999\u6e2f\u670d\u52a1\u5668_\u9999\u6e2f\u4e91\u670d\u52a1\u5668\u8d44\u8baf_\u670d\u52a1\u5668\u5e2e\u52a9\u6587\u6863_\u670d\u52a1\u5668\u6559\u7a0b\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.wsisp.com\/helps\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"zh-Hans\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/358e386c577a3ab51c4493330a20ad41\",\"name\":\"admin\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"zh-Hans\",\"@id\":\"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/gravatar.wp-china-yes.net\/avatar\/?s=96&d=mystery\",\"contentUrl\":\"https:\/\/gravatar.wp-china-yes.net\/avatar\/?s=96&d=mystery\",\"caption\":\"admin\"},\"sameAs\":[\"http:\/\/wp.wsisp.com\"],\"url\":\"https:\/\/www.wsisp.com\/helps\/author\/admin\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.wsisp.com\/helps\/55998.html","og_locale":"zh_CN","og_type":"article","og_title":"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3","og_description":"\u6587\u7ae0\u6d4f\u89c8\u9605\u8bfb217\u6b21\u3002Filebeat \u662f Elastic Stack\uff08\u4ee5\u524d\u79f0\u4e3a ELK Stack\uff09\u7684\u4e00\u90e8\u5206\uff0c\u662f\u4e00\u4e2a\u8f7b\u91cf\u7ea7\u7684\u65e5\u5fd7\u6587\u4ef6\u91c7\u96c6\u5668\u3002\u4e3b\u8981\u7528\u4e8e\u5411 Elasticsearch \u6216 Logstash \u53d1\u9001\u65e5\u5fd7\u6587\u4ef6\u6216\u76d1\u63a7\u6570\u636e\u3002\u5b83\u662f\u4ee5\u4ee3\u7406\u7684\u5f62\u5f0f\u5b89\u88c5\u5728\u670d\u52a1\u5668\u4e0a\uff0c\u76d1\u63a7\u6307\u5b9a\u7684\u65e5\u5fd7\u6587\u4ef6\u6216\u4f4d\u7f6e\uff0c\u6536\u96c6\u65e5\u5fd7\u4fe1\u606f\uff0c\u5e76\u5c06\u8fd9\u4e9b\u4fe1\u606f\u8f6c\u53d1\u5230 Elasticsearch \u6216 Logstash \u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u5904\u7406\u548c\u5206\u6790\u3002Filebeat \u8bbe\u8ba1\u7528\u6765\u8f7b\u91cf\u7ea7\u5904\u7406\u524d\u7aef\u65e5\u5fd7\u6536\u96c6\u4efb\u52a1\uff0c\u51cf\u5c11\u7cfb\u7edf\u8d44\u6e90\u7684\u5360\u7528\uff0c\u5e76\u4fdd\u6301\u5ba2\u6237\u7aef\u7684\u7b80\u5355\u3002","og_url":"https:\/\/www.wsisp.com\/helps\/55998.html","og_site_name":"\u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3","article_published_time":"2025-08-14T03:14:37+00:00","author":"admin","twitter_card":"summary_large_image","twitter_misc":{"\u4f5c\u8005":"admin","\u9884\u8ba1\u9605\u8bfb\u65f6\u95f4":"10 \u5206"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/www.wsisp.com\/helps\/55998.html","url":"https:\/\/www.wsisp.com\/helps\/55998.html","name":"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248) - \u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3","isPartOf":{"@id":"https:\/\/www.wsisp.com\/helps\/#website"},"datePublished":"2025-08-14T03:14:37+00:00","dateModified":"2025-08-14T03:14:37+00:00","author":{"@id":"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/358e386c577a3ab51c4493330a20ad41"},"breadcrumb":{"@id":"https:\/\/www.wsisp.com\/helps\/55998.html#breadcrumb"},"inLanguage":"zh-Hans","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.wsisp.com\/helps\/55998.html"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.wsisp.com\/helps\/55998.html#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"\u9996\u9875","item":"https:\/\/www.wsisp.com\/helps"},{"@type":"ListItem","position":2,"name":"\u3010\u9762\u8bd5\u7cbe\u9009\u301140\u9053Linux\u65e5\u5fd7\u9ad8\u9891\u9898\u6574\u7406(\u9644\u7b54\u6848\u80cc\u8bf5\u7248)"}]},{"@type":"WebSite","@id":"https:\/\/www.wsisp.com\/helps\/#website","url":"https:\/\/www.wsisp.com\/helps\/","name":"\u7f51\u7855\u4e92\u8054\u5e2e\u52a9\u4e2d\u5fc3","description":"\u9999\u6e2f\u670d\u52a1\u5668_\u9999\u6e2f\u4e91\u670d\u52a1\u5668\u8d44\u8baf_\u670d\u52a1\u5668\u5e2e\u52a9\u6587\u6863_\u670d\u52a1\u5668\u6559\u7a0b","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.wsisp.com\/helps\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"zh-Hans"},{"@type":"Person","@id":"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/358e386c577a3ab51c4493330a20ad41","name":"admin","image":{"@type":"ImageObject","inLanguage":"zh-Hans","@id":"https:\/\/www.wsisp.com\/helps\/#\/schema\/person\/image\/","url":"https:\/\/gravatar.wp-china-yes.net\/avatar\/?s=96&d=mystery","contentUrl":"https:\/\/gravatar.wp-china-yes.net\/avatar\/?s=96&d=mystery","caption":"admin"},"sameAs":["http:\/\/wp.wsisp.com"],"url":"https:\/\/www.wsisp.com\/helps\/author\/admin"}]}},"_links":{"self":[{"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/posts\/55998","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/comments?post=55998"}],"version-history":[{"count":0,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/posts\/55998\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/media?parent=55998"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/categories?post=55998"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/tags?post=55998"},{"taxonomy":"topic","embeddable":true,"href":"https:\/\/www.wsisp.com\/helps\/wp-json\/wp\/v2\/topic?post=55998"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}