<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: imc syslog events in IMC</title>
    <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/7090213#M5902</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i found how do you can see more log than from the last hour. It very easy &lt;LI-EMOJI id="lia_slightly-smiling-face" title=":slightly_smiling_face:"&gt;&lt;/LI-EMOJI&gt;&amp;nbsp;&lt;BR /&gt;Alarm -&amp;gt; Syslog Management -&amp;gt; Browse Syslog -&amp;gt;&amp;nbsp;At the top right there is the field IP Address and a down arrow It call "Advanced" Click on that and you can choose between Last hour and Last 7 Days.&amp;nbsp;&lt;/P&gt;&lt;P&gt;crazy ))&amp;nbsp;&lt;/P&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;</description>
    <pubDate>Wed, 03 Jun 2020 13:16:23 GMT</pubDate>
    <dc:creator>Alek_V</dc:creator>
    <dc:date>2020-06-03T13:16:23Z</dc:date>
    <item>
      <title>imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6483458#M1322</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I have some problems finding out how i can enlarge the amount of syslog events in the imc syslog database.&lt;/P&gt;&lt;P&gt;I already made some changes in imc (data export, no time en 2 million events), but whatever i do i only see events for 1 hour. Sometimes there are 5.000 another time there are 12.000 syslog events.&lt;/P&gt;&lt;P&gt;I also read somewhere that you can enlarge the syslog database when you disable data export, but how do i do that.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Marcel&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 May 2014 06:50:18 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6483458#M1322</guid>
      <dc:creator>marcelsun</dc:creator>
      <dc:date>2014-05-22T06:50:18Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6512890#M1367</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Try looking in IMC under System &amp;gt; System Configuration &amp;gt; Data Export.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;There should be a tab for Syslog where you can modify the Export Triggers associated with the Syslog data.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope it helps!&lt;/P&gt;</description>
      <pubDate>Tue, 17 Jun 2014 20:34:08 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6512890#M1367</guid>
      <dc:creator>Jarret Workman</dc:creator>
      <dc:date>2014-06-17T20:34:08Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6513414#M1370</link>
      <description>&lt;P&gt;The 2 million syslog events are reached very quickly in our network.&lt;/P&gt;&lt;P&gt;How can i disable this data export.&lt;/P&gt;&lt;P&gt;The By Time i can remove, but the by quantity is greyed out.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have attached an printscreen about this.&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Marcel&lt;/P&gt;</description>
      <pubDate>Wed, 18 Jun 2014 08:46:35 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6513414#M1370</guid>
      <dc:creator>marcelsun</dc:creator>
      <dc:date>2014-06-18T08:46:35Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6514304#M1373</link>
      <description>If you're quickly receiving 2 million syslog events, then you probably need to reconsider your overall approach to syslog collection.&lt;BR /&gt;&lt;BR /&gt;I would use a combination of filtering (stop syslogs being generated in the first place, change the level you collect logs at - e.g. disable debug, etc.). If you need to store/parse very large volumes of syslogs, it's probably better to use a dedicated system, such as Graylog2, or Splunk if you can afford it.</description>
      <pubDate>Wed, 18 Jun 2014 23:52:36 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6514304#M1373</guid>
      <dc:creator>LindsayHill</dc:creator>
      <dc:date>2014-06-18T23:52:36Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6782276#M2227</link>
      <description>&lt;P&gt;I have got a different Syslog Event problem. I have to create&amp;nbsp;a Syslog to Alarm event.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I&amp;nbsp;have&amp;nbsp;created&amp;nbsp;the&amp;nbsp;Syslog Template&amp;nbsp;first&amp;nbsp;then a&amp;nbsp;Syslog&amp;nbsp;to&amp;nbsp;Alarm&amp;nbsp;rule.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Test&amp;nbsp;showing&amp;nbsp;when&amp;nbsp;the event&amp;nbsp;occur, the&amp;nbsp;related&amp;nbsp;Syslog generated in&amp;nbsp;the Syslog List,&amp;nbsp;and&amp;nbsp;I&amp;nbsp;have&amp;nbsp;also&amp;nbsp;got&amp;nbsp;an&amp;nbsp;Alarm created&amp;nbsp;based&amp;nbsp;on&amp;nbsp;the&amp;nbsp;Syslog&amp;nbsp;message.&amp;nbsp;It&amp;nbsp;seems&amp;nbsp;the&amp;nbsp;system&amp;nbsp;and&amp;nbsp;the&amp;nbsp;settings&amp;nbsp;works&amp;nbsp;well. &amp;nbsp;&lt;/P&gt;&lt;P&gt;BUT,unfortunately&amp;nbsp;works&amp;nbsp;only ones. Not a single alarm generated after the first.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I&amp;nbsp;can&amp;nbsp;only&amp;nbsp;make&amp;nbsp;it&amp;nbsp;work&amp;nbsp;if&amp;nbsp;I&amp;nbsp;restart&amp;nbsp;the&amp;nbsp;&amp;nbsp;IMCFAULTDM.EXE on IMC&amp;nbsp;Server. And again system sends one single alarm.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I have also changed the following settings:&lt;/P&gt;&lt;P&gt;Set&amp;nbsp;Syslog&amp;nbsp;to&amp;nbsp;Alarm&amp;nbsp;-&amp;nbsp;repeat&amp;nbsp;interval&amp;nbsp;second&amp;nbsp;from&amp;nbsp;300&amp;nbsp;to&amp;nbsp;1&lt;/P&gt;&lt;P&gt;Repeat&amp;nbsp;times&amp;nbsp;from&amp;nbsp;5&amp;nbsp;to&amp;nbsp;1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also tried to resolve the generated alarm, then tested for a new alarm, but nothing come through.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have also experienced if the same event occur on a different switch, an alarm generated. But again only ones.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What am I doing wrong? Or could be a bug?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks much&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Sep 2015 21:39:40 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6782276#M2227</guid>
      <dc:creator>LajosVarga</dc:creator>
      <dc:date>2015-09-07T21:39:40Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6883018#M3102</link>
      <description>&lt;P&gt;Hello Lajos:&lt;BR /&gt;&amp;nbsp;Do you have solved the issue? I have the same issue, exactly the same.&lt;/P&gt;&lt;P&gt;I thing that is a configuration problem, not a bug.&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Hugo&lt;/P&gt;</description>
      <pubDate>Thu, 28 Jul 2016 12:19:58 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/6883018#M3102</guid>
      <dc:creator>GiroSinTornillo</dc:creator>
      <dc:date>2016-07-28T12:19:58Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/7033404#M5009</link>
      <description>&lt;P&gt;Hi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm coming across the exact same problem, where to syslog-to-alarm only works first time. Any subsequent similar syslog messages that match the template are not forwarded to alarm&lt;/P&gt;&lt;P&gt;Did you figure out what was causing the issue ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I followed the condfig guide similar to how you did&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Ger&lt;/P&gt;</description>
      <pubDate>Sun, 03 Feb 2019 19:45:34 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/7033404#M5009</guid>
      <dc:creator>HP-Network-Eng</dc:creator>
      <dc:date>2019-02-03T19:45:34Z</dc:date>
    </item>
    <item>
      <title>Re: imc syslog events</title>
      <link>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/7090213#M5902</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;i found how do you can see more log than from the last hour. It very easy &lt;LI-EMOJI id="lia_slightly-smiling-face" title=":slightly_smiling_face:"&gt;&lt;/LI-EMOJI&gt;&amp;nbsp;&lt;BR /&gt;Alarm -&amp;gt; Syslog Management -&amp;gt; Browse Syslog -&amp;gt;&amp;nbsp;At the top right there is the field IP Address and a down arrow It call "Advanced" Click on that and you can choose between Last hour and Last 7 Days.&amp;nbsp;&lt;/P&gt;&lt;P&gt;crazy ))&amp;nbsp;&lt;/P&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Wed, 03 Jun 2020 13:16:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/imc/imc-syslog-events/m-p/7090213#M5902</guid>
      <dc:creator>Alek_V</dc:creator>
      <dc:date>2020-06-03T13:16:23Z</dc:date>
    </item>
  </channel>
</rss>

