mb-scribe Service¶
Logging and analytics daemon for centralized event processing and reporting.
Overview¶
mb-scribe handles all logging, analytics, and reporting:
- Centralized logging - Collect logs from all services
- Real-time analytics - Process events as they occur
- Statistics aggregation - Daily/weekly/monthly summaries
- Report generation - Automated email reports
- Audit trail - Compliance and security logging
Functions¶
Log Collection¶
Aggregates logs from: - Email processing (spam, virus, policies) - Authentication events (logins, 2FA) - Configuration changes (settings, policies) - Administrative actions (user management) - System events (service starts, errors)
Analytics Processing¶
Real-time processing provides: - Email volume trends - Spam detection rates - Virus detection statistics - False positive analysis - Performance metrics
Report Types¶
- Daily Summary - Yesterday's statistics
- Weekly Report - 7-day trends and patterns
- Monthly Report - Full month analysis
- Security Report - Authentication and security events
- Custom Reports - On-demand queries
Configuration¶
Service file: /etc/systemd/system/mb-scribe.service
Log settings:
# Enable analytics
sudo mb-config set scribe.analytics_enabled true
# Report schedule
sudo mb-config set scribe.daily_report true
sudo mb-config set scribe.report_email admin@example.com
sudo mb-config set scribe.report_time "08:00"
# Retention
sudo mb-config set scribe.log_retention_days 90
sudo mb-config set scribe.stats_retention_days 365
Operations¶
sudo systemctl start mb-scribe
sudo systemctl status mb-scribe
sudo tail -f /var/log/mailborder/mb-scribe.log
Generate Reports¶
Daily report:
Weekly report:
Custom date range:
Email report:
Statistics¶
View statistics:
Example output:
Scribe Statistics
=================
Events Logged (24h): 125,678
Email events: 95,234
Auth events: 12,345
Admin actions: 234
System events: 17,865
Reports Generated:
Daily: 30
Weekly: 4
Monthly: 1
Storage:
Current size: 2.3 GB
Oldest log: 90 days
See Also¶
- Audit Logs - Log file reference
- System Monitoring