Hello,
I am new to this forum so any assistance would help.
I am currently trying to develop a script that extract all data from a log file with has the previous day's date.
Above is sample data from the log file. Essentially I would like to have all data with the previous date (in this case is Dec 17) extracted and output to a new file. Script should be able to do this regardless of what the previous day is.
Any help please!!!
I am new to this forum so any assistance would help.
I am currently trying to develop a script that extract all data from a log file with has the previous day's date.
Code:
$ <root@aixtest3> /var/log > more sudo.log
May 13 10:52:10 aixtest3 local2:notice sudo: tbrath : TTY=unknown ; PWD=/prodenvdumps ; USER=root ; COMMAND=/usr/bin/su - sybtest3
Dec 15 14:10:38 aixtest3 local2:notice sudo: klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/smit
Dec 15 14:10:38 : klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ;
COMMAND=/usr/bin/smit
Dec 15 14:10:59 : klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ;
COMMAND=/usr/bin/smit
Dec 15 14:10:59 aixtest3 local2:notice sudo: klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/smit
Dec 16 14:58:33 aixtest3 local2:notice sudo: klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/su - sybtest3
Dec 16 14:58:33 : klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ;
COMMAND=/usr/bin/su - sybtest3
Dec 17 15:08:04 aixtest3 local2:alert sudo: klewis : command not allowed ; TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/su - tbrath
Dec 17 15:08:04 : klewis : command not allowed ; TTY=unknown ; PWD=/home/klewis
; USER=root ; COMMAND=/usr/bin/su - tbrath
Dec 18 07:25:09 aixtest3 local2:notice sudo: klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/su - sybtest3
Dec 18 07:25:09 : klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ;
COMMAND=/usr/bin/su - sybtest3
Dec 18 07:25:41 aixtest3 local2:notice sudo: klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ; COMMAND=/usr/bin/smit
Dec 18 07:25:41 : klewis : TTY=unknown ; PWD=/home/klewis ; USER=root ;
COMMAND=/usr/bin/smit
Any help please!!!