Previous Topic: Edit the Syslog Connector

Next Topic: Windows Agent Deployment

View Syslog Events

One of the quickest ways to view query results on events collected by a syslog listener is to use the Prompt for Host.

To view syslog events

  1. Select the Queries and Reports tab.

    The Queries subtab displays.

  2. Expand Prompts under Query List and select Host.

    Query List - showing Host Prompt selected

  3. Submit a query for events collected by the default agent.
    1. Enter the default agent host name in the Host field, which is also the name of the CA Enterprise Log Manager on which it resides.
    2. Select agent_hostname.
    3. Click Go.

      Select agent_hostname and click Go.

  4. Display the results to examine.
    1. Click the Results column to sort by results.
    2. Scroll to the first result of F for failure. Assume it is a configuration warning in the category Configuration Management.
    3. Double-click to select the row to view in detail.

    The Event Viewer appears.

  5. Scroll to the area where the Result is displayed. In the example, the error is a warning that you need to configure the subscription module. This is a warning you should ignore until you have finished installing all of the CA Enterprise Log Manager servers you plan to install.

    The event viewer displays the results.