#814 Provide log rotation for PKI debug logs
Closed: fixed Opened by mharmsen.

This ticket was created in response to 'Bugzilla Bug #1035195 - PKI-CA doesn't provide a way to limit debug file at /var/log/pki-ca/debug'.

It appears that the PKI debug log facility utilizes a different infrastructure than the other PKI logging facilities which currently provide log rotation.

The reason that this logging infrastructure may have differed may have been due to a previous request to insure that a single debug log file could always be run against a 'tail -f' without concern of log roll over.

Regardless, however, log rotation should be made an optional feature of the PKI debug log.


This is very important: This created a 580MB log file on my system (with a 1.5G /var/log) before I realised. For old IPA installs, or old PKI installs this rotation is important to have.

This will be fixed in ticket #195.

Metadata Update from @mharmsen:
- Issue set to the milestone: 10.4

Per CS/DS meeting of 04/24/2017 and status of "https://pagure.io/dogtagpki/issue/195 - Outdated logging service": FUTURE - critical

Metadata Update from @mharmsen:
- Custom field feature adjusted to ''
- Custom field proposedmilestone adjusted to ''
- Custom field proposedpriority adjusted to ''
- Custom field reviewer adjusted to ''
- Custom field version adjusted to ''
- Issue close_status updated to: None
- Issue set to the milestone: FUTURE (was: 10.4)

Any chance this priority can be raised? The dogtag logs can be immense.

Best I can do is assign it to Milestone 10.6 (which will have your request in it).

Metadata Update from @mharmsen:
- Issue set to the milestone: 10.6 (was: FUTURE)

Daily log rotation has been implemented in master branch (i.e. 10.6):

  • https://github.com/dogtagpki/pki/commit/3912fd55201cbdb33a75640824d1aa035aea7b86
  • https://github.com/dogtagpki/pki/commit/d9ec2bee47b4d4fbd5d93e46c0d7f54a0299ba9a

Metadata Update from @edewata:
- Issue assigned to edewata
- Issue close_status updated to: fixed
- Issue set to the milestone: 10.6.0 (was: 10.6)
- Issue status updated to: Closed (was: Open)

Metadata Update from @mharmsen:
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1565073

Dogtag PKI is moving from Pagure issues to GitHub issues. This means that existing or new
issues will be reported and tracked through Dogtag PKI's GitHub Issue tracker.

This issue has been cloned to GitHub and is available here:
https://github.com/dogtagpki/pki/issues/1381

If you want to receive further updates on the issue, please navigate to the
GitHub issue and click on Subscribe button.

Thank you for understanding, and we apologize for any inconvenience.

Metadata