Forum Discussion
The point is not how configure syslog, the point is configure syslog to include specific string on /var/log/ltm.
You are exactly right
- Mar 24, 2022
you should follow the guide that I share with you, it looks probably to help you with your requirement, if not, share what string do you want exactly to add.
- JiwookMar 24, 2022Nimbostratus
Actually, I want to include expired Ssl certification log on /var/log/ltm to syslog. I try to test some solutions on devcentral, but there are many of different suggestions and make me confused 😞
I need to filter and include some log lines contained string 'expire' to syslog
- Mar 24, 2022
Ok, but it looks easy, there are native configurations that you can apply to meet your requirement:
This is one on the crontab daemon executed every day:
https://support.f5.com/csp/article/K14318
You can send alert by email, or monitor by SNMP the F5:
https://support.f5.com/csp/article/K15288
You can be create a filter to matches a specific message-id and transmits it to the local-syslog log publisher.
From the CLI enter following commands:
tmsh create /sys log-config publisher local-syslog destinations add { local-syslog } tmsh create /sys log-config filter filter_cert_will_expire message-id 01420008 publisher local-syslog tmsh create /sys log-config filter filter_cert_expired message-id 01420007 publisher local-syslog
- Mar 24, 2022
Please use caution with older guides. The guide you mentioned uses "bigpipe" or b shell commands, which were deprecated some time ago and won't work in recent versions.
- Mar 24, 2022
Same Article that I shared before.
This is one on the crontab daemon executed every day: