Description
System logs can be collected by a small syslogd replacement designed for Runit service supervision. Administrators use socklog with the installed `/etc/sv` service trees for user-space and kernel logging. Log capture can include sensitive system events, so retention, permissions, and rotation need policy.