Forum Discussion

12 Replies

  • You could scp or SFTP the log file off if you're not using ASM logging already. The ASM logfile in /var/log is already included in logrotate to archive and purge the logs.

     

    • John_131301's avatar
      John_131301
      Icon for Nimbostratus rankNimbostratus
      Does this get the event log? If I do this and search events I still get well over 50,000 events. Does anything get stored in the database?
    • shaggy's avatar
      shaggy
      Icon for Nimbostratus rankNimbostratus
      /var/log/asm has many secev events, but the events shown in the configuration utility are stored in a mysql database.
    • John_131301's avatar
      John_131301
      Icon for Nimbostratus rankNimbostratus
      /var/log/asm currently has a size of 0 but hen I go to Security ›› Event Logs : Application : Requests I have 1755555 total entries.
  • do you currently log security events from ASM to an external log collector such as a syslog server or splunk? that's probably the best way to store/backup logged ASM events off-box

     

  • shaggy's avatar
    shaggy
    Icon for Nimbostratus rankNimbostratus

    do you currently log security events from ASM to an external log collector such as a syslog server or splunk? that's probably the best way to store/backup logged ASM events off-box

     

    • shaggy's avatar
      shaggy
      Icon for Nimbostratus rankNimbostratus
      why are you looking to clear all of the events?
    • John_131301's avatar
      John_131301
      Icon for Nimbostratus rankNimbostratus
      So when searching it doesn't have to sort through 1755555 entries.