Configuring Log Filters
You can specify log filter conditions for system logs received from multiple sender devices on the Log Receiver to easily locate specific types of logs and monitor large volumes of logs.
- Open QuLog Center.
- Go to QuLog Service > Log Receiver > Filter Criteria.
- Click Event Log or click Access Log.
-
Select one of the actions to perform:
Tasks
Steps
Add a filter criteria
-
Click Add Filter Criteria.
The filter criteria window appears.
-
Specify the following information:
-
Severity level
-
User
-
Source IP
-
Hostname
Specify the following information for event logs:
-
Service
-
Category
-
Content
Specify the following information for access logs:
-
Connection type
-
Accessed resources
-
Action
-
Edit a log filter
-
Click .
The Filter Criteria window appears.
-
Edit the log filter fields.
Delete a log filter
-
Select a filter criteria.
-
Click .
A confirmation window appears.
-
Click Yes.
Import a custom filter criterion
-
Click Add Filter Criteria.
-
Go to Import custom filter criteria from the selected tab.
-
Click .
The custom filter criteria drop-down menu appears.
-
Select the custom filter tab from the drop-down menu.
The selected custom filter criteria are applied to the log.
Note:For details on how to create a custom filter tab, see Searching and Creating Filter Tabs for Remote Logs from Sender Devices.
-
-
Click Apply.
All changes are applied.