loganalyzer收集到日志后,都放到同一个数据源中,导致搜索等操作缓慢,将每天日志生成一个数据源加快搜索速度。
vi log_cut.sh
#!bin/bash
word make 140513
#set -x
DBUSER=syslog
DBPASSWD=syslog
DBNAME=Syslog
BACKUPDIR=/var/log/syslog
DATE=`date +%Y%m%d%H%M`
date2=`date --date='yesterday' '+%y%m%d'`
backup_mysql()
{
cd $BACKUPDIR
mysql -u$DBUSER -p$DBPASSWD -e "use Syslog;create table log$date2 select * from SystemEvents;ALTER TABLE log$date2 ADD PRIMARY KEY (\`id\`);INSERT INTO logcon_sources VALUES ($date2,'log$date2','',2,'',0,0,'1',NULL,NULL,'monitorware',0,'localhost','Syslog','syslog','syslog','log$date2',1,100,'',NULL,NULL);truncate table SystemEvents;"
mysqldump -u$DBUSER -p$DBPASSWD -R $DBNAME `mysql -u$DBUSER -p$DBPASSWD -e 'use Syslog;show tables' -ss |egrep -v 'log' `> $DATE$DBNAME.sql
tar czf $DATE$DBNAME.sql.tar.gz $DATE$DBNAME.sql
rm -rf $DATE$DBNAME.sql
}
backup_mysql
create table logtest like SystemEvents; insert into logtest select * from SystemEvents;