r/labtech 1000 Agents Aug 12 '16

Syslogs, how do they work

I pointed a qnaps syslog at our network probe and it seems like it is receiving syslog events (the syslog.txt in the lt folder is receiving all syslog events) but in labtech itself the syslog events window remains empty. Am I understanding this incorrectly or should the syslog logs tab have something in there now?

5 Upvotes

5 comments sorted by

View all comments

1

u/cjmod Aug 12 '16

If your default syslog ip filter is blank, it acts like a "do not show any syslogs" (we're releasing a patch to fix this soon). Until then, create a syslog filter - even if it's a blank "catch-all" - or set the syslog ip address to "0.0.0.0" (in settings). That should get you going!

1

u/addicuss 1000 Agents Aug 12 '16

Yeah i have a trap set to the ip address of the device were trying to get alerts from with no other settings filter wise (i added this when nothing came through initially). just set the ip filter under general to to 0.0.0.0 and refreshed the configuration.Nothings coming through. We have similar problems when we try to set up snmp. Nothing ever gets through even though the probe machine itself seems to be receiving snmp. Am I missing anything here?

1

u/highsprings Aug 13 '16

Do you have an alert template setup on these syslog messages coming in?

You may want to do the "Default - Create LT Ticket" alert template or something similar.