Tony_Jarvis_132
May 15, 2014Altostratus
Determine exact log alerts for specific events
Hi all
I have a requirement to configure an F5 LTM to send specific types of log alerts to a Splunk collector. The requirement is quite straightforward, such as:
- Loss of HA connection with peer, HA failover, etc.
- State change of virtual servers, pools, pool members.
- All health and performance exception messages.
I know this sounds quite intuitive, but no matter how much I look through F5 manuals or SOLs, I cannot find a resource that tells me what specific syslog alerts map to events such as those listed above.
Where should I be looking so that I can configure this appropriately and then find the desired alerts when looking through the logs (ie what would the log description be and what log level would it map to)?