1 /**************************************************************************
2 ** (c) Copyright 2002, Andromeda Technology & Automation
3 ** This is free software; you can redistribute it and/or modify it under the
4 ** terms of the GNU General Public License, see the file COPYING.
5 ***************************************************************************
6 ** MODULE INFORMATION *
7 ***********************
8 ** FILE NAME : gcm_input.cpp
9 ** SYSTEM NAME : Gnucomo - Gnu Computer Monitoring
10 ** VERSION NUMBER : $Revision: 1.7 $
12 ** DESCRIPTION : Application to store client messages into the database
13 ** The client message contains a log file from one of the
14 ** system logs. Gcm_input parses the log file and enters
15 ** the raw data into the 'log' table of the gnucomo database.
17 ** The system log may arrive in one of several forms:
18 ** 1. Log file (archived or not) from a client machine.
19 ** 2. Log file from a client system, arriving in a clear Email.
20 ** 3. Log file from a client machine, arriving in an
23 ** additional information we need that may not be availble in
24 ** the content of the log is:
25 ** - FQDN of the client.
26 ** - Time of arrival of the log
27 ** - Service that created the log.
29 ** If the log arrives in an Email, these items probably are
30 ** available in the mail header. Otherwise, they have to be
31 ** provided as command line arguments.
33 ** Command line arguments:
34 ** -c <name> Configuration name (default = gnucomo).
35 ** -d <date> Date and time of log arrival.
36 ** -h <hostname> FQDN of the client.
37 ** -i Incremental - partial list of parameters.
38 ** -s <service> Service that created the log.
39 ** -T Test mode. Do not alter the database.
40 ** -v Verbose (debug) output.
41 ** -V Print version and exit.
46 ***************************************************************************
47 ** ADMINISTRATIVE INFORMATION *
48 ********************************
49 ** ORIGINAL AUTHOR : Arjen Baart - arjen@andromeda.nl
50 ** CREATION DATE : Aug 29, 2002
51 ** LAST UPDATE : Aug 11, 2003
53 **************************************************************************/
55 /*****************************
56 $Log: gcm_input.cpp,v $
57 Revision 1.7 2003-08-14 10:28:37 arjen
58 Use parameters from a new section 'logging' with three configuration parameters:
59 method - Output method to use for logging.
60 destination - Name of the log output destination.
61 level - Log level: Verbose output if greater than 0.
63 Revision 1.6 2003/08/11 16:56:16 arjen
64 Different kinds of log files are parsed by a collection of objects
65 of different classes, derived from the base class line_cooker
66 Depending on the message content or the message_type element in
67 XML, one of these objects is selected.
69 Logrunner is integrated with gcm_input. Although its functionality
70 is still limited, a connection between logrunner and gcm_input
73 Revision 1.5 2003/08/05 08:11:06 arjen
74 Added two configuration parameters:
75 logfile - Log to this file instead of stderr.
76 verbosity - Verbose output if greater than 0.
77 Added '-i' option for incremental parameter updates
79 Revision 1.4 2003/03/29 08:42:00 arjen
80 Exit without reading any input if the database connection fails.
82 Revision 1.3 2002/11/09 08:04:27 arjen
83 Added a reference to the GPL
85 Revision 1.2 2002/11/04 10:13:36 arjen
86 Use proper namespace for iostream classes
88 Revision 1.1 2002/10/05 10:25:49 arjen
89 Creation of gcm_input and a first approach to a web interface
91 *****************************/
93 static const char *RCSID = "$Id: gcm_input.cpp,v 1.7 2003-08-14 10:28:37 arjen Exp $";
100 #include "syslog_cooker.h"
101 #include "irix_syslog_cooker.h"
102 #include "access_cooker.h"
103 #include "error_cooker.h"
105 bool verbose = false;
106 bool testmode = false;
107 bool incremental = false;
108 std::ostream *log = &std::cerr;
110 static char *Version = "gcm_input version 0.0.7 - Jul 24, 2003";
113 /*=========================================================================
115 ** SYNOPSIS : int main(int argc, char *argv[])
119 ** DESCRIPTION : Parse command line arguments and establish a connection
121 ** When we have a database connection, parse the log file
128 ** LAST MODIFIED : Aug 11, 2003
129 **=========================================================================
132 int main(int argc, char *argv[])
134 const char *usage = "Usage: gcm_input [-c configname] [-h hostname] [-i] [-d date]"
135 " [-s service] [-T] [-v] [-V]\n";
138 char *config_name = "gnucomo";
139 std::ofstream logfile;
142 /* Parse command line arguments */
145 String hostname(""), service("");
149 while ((option = getopt(argc, argv, "c:h:d:s:iTvV")) != -1)
154 config_name = optarg;
162 arrival = String(optarg);
163 if (!arrival.proper())
165 std::cerr << "gcm_input: Invalid date string: " << optarg << ".\n";
187 std::cout << Version << "\n";
196 /* Get the configuration file */
198 if (!cfg.read(config_name))
200 std::cerr << "Can not read Gnucomo configuration file for " << config_name << ".\n";
204 String log_method = cfg.find_parameter("logging", "method");
205 String log_destination = cfg.find_parameter("logging", "destination");
206 int level = cfg.find_parameter("gcm_input", "level");
208 if (log_method == "file" && log_destination != "")
210 std::cerr << "Logging to " << log_destination << ".\n";
211 logfile.open(log_destination, _IO_APPEND); // for gcc 2
212 //logfile.open(logfile_name, std::ios_base::app); // for gcc 3
215 std::cerr << "Can't open logfile " << log_destination << " for writing.\n";
220 verbose = verbose || level > 0;
224 *log << "Gcm_input starting at " << Now() << ".\n";
228 *log << "Hostname = " << hostname;
229 *log << " Arrival = " << arrival;
230 *log << " Service = " << service << "\n";
231 *log << "Config OK.\n";
234 /* Try to connect to the database */
236 gnucomo_database db(&cfg);
238 if (db.is_connected())
241 client_message msg(&std::cin, db);
243 irix_syslog_cooker islc;
247 msg.add_cooker(&slc);
248 msg.add_cooker(&islc);
249 msg.add_cooker(&alc);
250 msg.add_cooker(&elc);
252 if (msg.classify(hostname, arrival, service) > 0.9)
256 *log << "Gcm_input finished at " << Now() << ".\n";
261 *log << "gcm_input: Can not connect to database.\n";
262 *log << "Gcm_input finished at " << Now() << ".\n";