Forum Discussion

treiman_133050's avatar
treiman_133050
Icon for Nimbostratus rankNimbostratus
Nov 19, 2014

Big-IP Log Message Reference

I am trying to write a comprehensive log message parser for Big-IP appliances to be used in our SIEM system. My main focus first is system logging and LTM & GTM. Does there exist a some sort of log message reference for Big-IP appliances? There seem to be some information in various KB articles, e.g. in one talking about mcpd pool/node health checks, but I believe this will hardly lead me to a comprehensive listing. Also another way is to just wait and see what events I get in and create a parser for those messages as we go, but it would be easier, of course, to work with a vendor-made list.

 

2 Replies

  • i also do not have the list but there is log matching definition for snmp trap at /var/run/bigip_error_maps.dat. it may be useful. sol6420: The /var/run/bigip_error_maps.dat file maps the alertd process input from the syslog-ng utility to an alert name https://support.f5.com/kb/en-us/solutions/public/6000/400/sol6420.html