From: Joe Perches <joe@perches.com>
To: david@lang.hm
Cc: linux-kernel <linux-kernel@vger.kernel.org>
Subject: Re: best way to handle multi-line kernel messages
Date: Wed, 13 Jul 2011 17:51:41 -0700 [thread overview]
Message-ID: <1310604701.1662.55.camel@Joe-Laptop> (raw)
In-Reply-To: <alpine.DEB.2.02.1107131723410.16335@asgard.lang.hm>
On Wed, 2011-07-13 at 17:30 -0700, david@lang.hm wrote:
> a query was made on the rsyslog mailing list about the possibility of
> rsyslog handling kernel messages better. Currently each line of logs is a
> separate log entry (and as log entries traverse networks there are thigns
> taht can cause them to get re-ordered). It would be nice to be able to
> combine multi-line logs into one log entry.
>
> The problem is figuring out how to tell when one log entry finishes and
> the next starts.
>
> >From examining logs it looks like follow-up lines are frequently (but not
> always) indented with some form of whitespace (this indentation taking
> place after the timestamp if that's enabled)
> but this is not consistantly the case.
No, not at all. Most follow-on lines are pr_cont.
> I suspect that there is not currently any good way for something to really
> tell when one log entry has finished and another is starting,
There isn't.
> but I wanted
> to ask here if there is anything that I should be able to rely on (with
> the thought that fixing log messages that don't work that way coudl be
> somethign for -janitors or newbes to work on)
you'll have to implement something like:
pr_start(&cookie);
pr_multi_<level>(cookie, fmt, ...);
pr_multi_cont(cookie, fmt, ...);
pr_end(cookie);
> or is this a completely hopeless task that people receiving logs should
> not even try to do?
There really aren't _that_ many places where
multiple calls to printk/pr_level are made.
prev parent reply other threads:[~2011-07-14 0:51 UTC|newest]
Thread overview: 2+ messages / expand[flat|nested] mbox.gz Atom feed top
2011-07-14 0:30 best way to handle multi-line kernel messages david
2011-07-14 0:51 ` Joe Perches [this message]
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=1310604701.1662.55.camel@Joe-Laptop \
--to=joe@perches.com \
--cc=david@lang.hm \
--cc=linux-kernel@vger.kernel.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox