Syslog Event Monitor Reference Guide

Syslog Event Monitor

Monitors incoming Syslog events and alerts based on their contents.

Overview

The Syslog Event Monitor watches for incoming Syslog events and alerts based on their contents. Many Linux-based systems and some networking gear can send Syslog messages to report various conditions. To use the Syslog Event Monitor, configure your other devices to send Syslog to the monitoring system. In single-site configurations, that will be the system on which our software is running. In multi-site configurations, that will be the remote node.

Use Cases

  • Getting alerts about incoming Syslog messages

Monitoring Options

This event monitor provides the following options:

Include a list of all new Syslogs in each notification

With this option, the event monitor will list all new Syslogs that have been received since the last time the event monitor ran. Use the limit option to control how many messages will be displayed.

Convert priority and facility codes to text values

Syslog messages start with a code that indicates the priority and the facility (type) for the message. Use this option to convert the numeric code into text values that are easy to read.

Alert with Critical if any Syslog message contains specified text

With this option selected, the event monitor will search for multiple strings in the Syslog and alert if any are found.

Alert with Error if any Syslog message contains specified text

With this option selected, the event monitor will search for multiple strings in the Syslog and alert if any are found.

Alert with Warning if any Syslog message contains specified text

With this option selected, the event monitor will search for multiple strings in the Syslog and alert if any are found.

Alert with Success if any Syslog message contains specified text

With this option selected, the event monitor will search for multiple strings in the Syslog and alert if any are found.

Authentication and Security

This event monitor does not require any authentication.

Protocols

Data Points

This event monitor generates the following data points:

Data Point Description
Message Count The number of Syslog messages at the time of the last event monitor run.

Sample Output

Tutorial

To view the tutorial for this event monitor, click here.

Back to Library

Comments

There are no user-contributed comments for this page. Be the first to submit a comment!

Add a comment