Configuring Custom Log Filters (NSM Procedure)

You can create custom log filters or edit the set of predefined log filters to specify which data is written to your log files as well as its format.

To configure the log filters:

  1. In the NSM navigation tree, select Device Manager > Devices.
  2. Click the Device Tree tab, and then double-click the Infranet Controller for which you want to configure log filter.
  3. Click the Configuration tab. In the configuration tree, select System > Log/Monitoring > Filters.
  4. Add or modify settings as specified in Table 63.
  5. Click one:
    • OK—Saves the changes.
    • Cancel—Cancels the modifications.

Table 63: Log Filter Configuration Details

Option

Function

Your Action

Filter Name

Specifies a name for the filter.

Enter a name for the filter.

Start Date

Specifies the date from which logs have to be written.

Enter a start date.

End Date

Specifies the date up to which logs have to be written.

Enter an end date.

Query

Specifies the custom expression language to control which subset of data the Infranet Controller writes to the log.

To use the Infranet Controller custom expression language:

  1. Click the New Expression button. The Custom Expression editor is displayed.
  2. Select the variable from the Expression Dictionary and click the Insert Expression button.
  3. Click the Validate button to validate the expression.
  4. Click OK to save the custom expression.

Format Type

Specifies the format of the data in the log.

Select one of the following format types:

  • Standard: This log filter format logs the date, time, node, source IP address, user, realm, and the Infranet Controller event ID and message.
  • WELF: This customized WebTrends Enhanced Log Format (WELF) filter combines the standard WELF format with information about the Infranet Controller appliance’s realms, roles, and messages.
  • W3C: The World Wide Web Consortium’s extended log file format is a customizable ASCII format with a variety of different fields. Visit http://www.w3.org for more information about this format. Only the User Access log offers this filter as an option.
  • Custom: Enter the format you want to use in Custom Format. When entering a format, surround variables with percentage symbols (for example %user%). All other characters in the field are treated as literals.

Related Documentation