# For synology syslog Monitoring:
@type syslog
port 5141
bind 0.0.0.0
protocol_type tcp
message_format auto
tag system.synology
@type grep
key message
pattern (accessed the shared folder)
@type record_transformer
message ${record["host"]}: ${record["message"]}
@type copy
@type file
path /tmp/syslog_synology.log
time_slice_format %Y%m%d
time_slice_wait 1m
@type relabel
@label @good