Linux Logging Concepts
Jump to navigation
Jump to search
Internal
Overview
Linux system logging is managed by two systems: rsyslogd and journald, which is a component of systemd.
rsyslogd
rsyslogd comes configured by default to write logging information into files like /var/log/messages, and it can be configured to provide additional filtering, encryption and log information relaying to external systems.
journald
journald daemon is a component of systemd. It handles syslog, kernel, and early boot messages, as well as messages written to standard output and standard error by all services.
The primary command-line interface for interaction with journald is journalctl.