On Mon, May 29, 2017 at 07:21:07PM +0200, Björn 'besser82' Esser wrote: > Does this qualify to be a system-wide change? To me this looks like a > self-contained change, since I don't see any other packages or processes in > need for adjustment, but rsyslog itself. > > Please correct me, if I'm mistaking. Besides logwatch that was already mentioned, there is also logcheck that parses logfiles and will break. Other tools might be things like fail2ban or denyhosts that scan logs for failed login attempts to block IP addresses. Kind regards Till _______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx