Forum Discussion

Tony_Jarvis_132's avatar
Tony_Jarvis_132
Icon for Altostratus rankAltostratus
May 15, 2014

Determine exact log alerts for specific events

Hi all

 

I have a requirement to configure an F5 LTM to send specific types of log alerts to a Splunk collector. The requirement is quite straightforward, such as:

 

  • Loss of HA connection with peer, HA failover, etc.
  • State change of virtual servers, pools, pool members.
  • All health and performance exception messages.

I know this sounds quite intuitive, but no matter how much I look through F5 manuals or SOLs, I cannot find a resource that tells me what specific syslog alerts map to events such as those listed above.

 

Where should I be looking so that I can configure this appropriately and then find the desired alerts when looking through the logs (ie what would the log description be and what log level would it map to)?

 

1 Reply