Creating a Custom Filter Tab for Event Logs on a Sender Device
- Open QuLog Center.
- Go to QuLog Service > Sender Devices.
- Click on a sender device.
- Go to Event Log .
- Go to the search bar.
-
Click
.
-
Specify the following filter
fields:
Fields
Steps
Severity Level
-
Click
.
The severity level drop-down menu appears.
-
Select a severity level option.
Service
-
Click
.
The service drop-down menu appears.
-
Select an service.
The Category option appears.
Note:The Category option does not appear if you select any services or do not specify the application.
-
Specify the service Category.
Date
-
Click
.
The date drop-down menu appears.
-
Select a date option.
Content
-
Click
.
The content condition option appears.
-
Select a condition.
-
Specify the content keywords.
User
-
Click
.
The user condition option appears.
-
Select a condition.
-
Specify the keywords.
Source IP
-
Click
.
The source IP address condition option appears.
-
Select a condition.
-
Specify the source IP address.
Hostname
-
Click
.
The hostname condition option appears.
-
Select a condition.
-
Specify the keywords.
Client App
-
Click
.
The client app condition option appears.
-
Select a condition.
-
Specify the keywords.
Flag
-
Click
.
The flag condition option appears.
-
Select a condition.
-
Specify the keywords.
-
- Optional:
Click Reset to clear
all search filters.
Respecify search filters as many times as required.
-
Click Search.
The list of filtered results is displayed.
-
Click Add as Customized
Tab.
The Add as Customized Tab window appears.
- Enter a tab name.
-
Click Apply.
-
The custom filter tab is created.
-
The custom filter tab is displayed next to the Main tab.
-