Forum Discussion
Seth_Cooper
Aug 17, 2015Employee
Hi Erik,
Your best bet for the future is to configure remote syslog on the bigip and have the logs sent off box to the syslog server. We have some integrations with SPLUNK.
For the issue you have now, the information will be stored in /var/log/apm. The audit log shows logins for the bigip admin UI or CLI. It doesn't look like the UCS contains the logs files as the UCS is a configuration backup.
Seth