Forum Discussion
Jeremy_Bridges_
Nimbostratus
Sep 15, 2009SNMP and SysLog Facilities
I would like to send an SNMP trap every time a message is logged to the em log (local4). I don't see how to do that in the /config/user_alert.conf or /etc/alertd/alert.conf files. I have found the following document about how to set these up, but that doesn't seem to tell me how to specify the facility:
http://devcentral.f5.com/Default.aspx?tabid=63&articleType=ArticleView&articleId=256
How do I specify this?
- hoolio
Cirrostratus
Hi kiroc, - Jeremy_Bridges_
Nimbostratus
Thanks for the info. I will definately reply back with anything I find out. - Jeremy_Bridges_
Nimbostratus
By the way, would these TMM entries for syslog be overwritten if the LTM software was upgraded? - hoolio
Cirrostratus
In 9.4.2 and higher the custom syslog include file is stored in the bigip_sys.conf and should be preserved through an upgrade. In prior versions I think the custom syslog.conf configuration could potentially be overwritten during an upgrade. - Jeremy_Bridges_
Nimbostratus
I think I have followed all of the steps correctly, but I am not seeing the SNMP traps I am expecting. To write the additions to the syslog config, I used these resources:destination d_em { file( "/var/log/em" create_dirs(yes) template("$DATE $HOST <$FACILITY.$PRIORITY> $MSG\n") template_escape(no) ); };
logger -p local1.alert "testing"
Sep 23 17:04:39 local alert jeremy: testing
alert BIGIP_CUSTOM_ALL_LOCAL1 "(.*?) snmptrap OID=".1.3.6.1.4.1.3375.1.1.110.205" }
Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects