New source, off by default and switched in Settings > Sources, that collects the system logs of the machine hosting the stack: - reads the systemd journal files directly (pure Go reader, no journalctl in the image), from /var/log/journal and /run/log/journal mounted read-only under /host; - falls back to following the text files of /var/log (syslog, messages, *.log) on hosts without journald; - positions saved in /data/hostlogs-state.json, HOST_LOGS_BACKFILL read when the source is turned on; - source_type "host", selectable in the Source filter; - compose mounts and group_add (HOST_LOGS_GID, adm by default), docs. Co-Authored-By: Claude Opus 5.5 (1M context) <noreply@anthropic.com>
28 lines
1.0 KiB
Bash
28 lines
1.0 KiB
Bash
# Copy this file to .env and adjust it.
|
|
SYSLOG_PORT=514
|
|
HTTP_PORT=8080
|
|
TZ=Europe/Paris
|
|
# How long logs are kept (e.g. 7d, 30d, 12w, 1y)
|
|
RETENTION=30d
|
|
# Web UI authentication (empty = disabled)
|
|
AUTH_USER=
|
|
AUTH_PASS=
|
|
# Reverse DNS: show host names instead of IP addresses (on/off)
|
|
RDNS=on
|
|
# DNS server used for reverse lookups (e.g. your router: 192.168.1.1). Empty = system resolver
|
|
DNS_SERVER=
|
|
# Allow "Delete all logs" in Settings (true/false)
|
|
ALLOW_PURGE=true
|
|
# Maximum number of rows in a CSV export
|
|
EXPORT_MAX=100000
|
|
# Collect the logs of the Docker containers of this machine (on/off)
|
|
DOCKER_LOGS=on
|
|
# History read from a container seen for the first time (e.g. 30m, 1h, 24h; 0 = only new lines)
|
|
DOCKER_BACKFILL=1h
|
|
# Host system logs (enable them in Settings > Sources)
|
|
# Group allowed to read the host logs: 4 = adm on Debian/Ubuntu; or the systemd-journal group
|
|
# (getent group systemd-journal | cut -d: -f3)
|
|
HOST_LOGS_GID=4
|
|
# History read when the source is turned on (e.g. 30m, 1h, 24h; 0 = only new entries)
|
|
HOST_LOGS_BACKFILL=1h
|