Forum Discussion

Anthony's avatar
Anthony
Icon for Nimbostratus rankNimbostratus
Aug 28, 2013

Log in the audit log and changes being made every minute?

I've just finished rolling back my test loadbalancers to 11.2.1 HF8. All appears well apart from a recurring change that keeps knocking them out of sync.

In the audit log I see the following:

Aug 28 15:49:10 LTM1 notice tmsh[17035]: 01420002:5: AUDIT - pid=17035 user=root folder=/Common module=(tmos) status=[Command OK] cmd_data=list sys db ucs.loadtime one-line
Aug 28 15:50:09 LTM1 notice tmsh[17052]: 01420002:5: AUDIT - pid=17052 user=root folder=/Common module=(tmos) status=[Command OK] cmd_data=list sys db ucs.loadtime one-line
Aug 28 15:51:09 LTM1 notice tmsh[17060]: 01420002:5: AUDIT - pid=17060 user=root folder=/Common module=(tmos) status=[Command OK] cmd_data=list sys db ucs.loadtime one-line
Aug 28 15:52:10 LTM1 notice tmsh[17072]: 01420002:5: AUDIT - pid=17072 user=root folder=/Common module=(tmos) status=[Command OK] cmd_data=list sys db ucs.loadtime one-line

I'm not sure what this would be caused by as the other pairs of LTMs are not doing this.

Any help is much appreciated.

Thanks Ant

2 Replies

  • it is caused by /usr/shared/ts/bin/clean_db.pl. this is tracked as ID387803 and is fixed in 11.4.0.

     

    ID387803 - clean_db causes /var/log/audit to fill with spurious messages

     

  • Thanks nitass - I just stumbled upon the 11.4.0 release note comment too after numerous other google searches. Would explain why I wasn't seeing it before though as we had run up to 11.4.0.

     

    Thanks, Anthony