Ahoj there, i'm sending in messages directly to vRLI server over udp:514. They should be perfectly RFC compatible as it works on another syslog server (non vRLI server 😉 ). Question: i can't get vRLI to format/extract the structured data automatically. I found some docs regarding syslog structured-data extraction for agent but nothing for non-agent messages. Isn't this implemented? As an example: 2017-08-28T09:28:55.509334+02:00 ...more »
General Log Insight Q&A
The new feature "Dashboard legend mouse-over in one widget now highlights corresponding chart items across widgets" is really bad on some dashboards, so that some dashboards are not useable anymore, because the screen is filled up with mouse-over informations and on some dashboards it flipps between mouse-over hints and back and back to mouse-over - because of to many informations that will be displayed and between chart ...more »
Failed to create cluster snapshot
Hi, Does anyone have any experience in running LI Agent on MS failover clusters? We are trying to monitor the SQL logs and obviously the clustered drive (where the logs exist) are only mounted on one server at a time, so when the LI agent starts on each server, in the pair, one can read the logs drive and the other can't so it ignores that drive as it doesn't exist. When the cluster fails over we need a way of telling ...more »
I noticed that some of the built-in vSphere Log Insight 4.x dashboard queries, for example, the VM Snapshots dashboard, don't seem to work correctly (or perhaps I'm not doing something correctly). The ESXi hosts are 5.5 and 6.0 hosts. For instance - If I open the "VM snapshots created" report, I see that it is filtering on "vmw_esxi_snapshot_operation" contains "create". But that does not bring up any snapshot related ...more »
Why is it that the Log Insight 4.x documentation recommends using a VCSA agent over the syslog forwarding for 6.0? Example: "For earlier versions of vSphere, while the vCenter Server Appliance does contain a syslog daemon that could be used to route logs, the preferred method is to install a vRealize Log Insight agent." Was going to setup the VCSA syslog forwarding as detailed in the following blog post: http://www.virtuallyghetto.com/2015/03/a-preview-of-native-syslog-support-in-vcsa-6-0.html ...more »
Do we have a way to import data from SQL/Oracle (From tabels in DB)? Got a customer who needs this - Large Telco
Is it possible now or will it be possible in the short term to use the agent group name as an installation parameter for the Windows and Linux agent so it automatically gets the right config after installation without requiring administrative intervention?
Please see the attached screendump. The trend chart is showing a downwards trend. When I hover the mouse over the icon it shows that there is not difference in past and present trend/the trend is so small that there is little to no difference in the trend.
This is misleading in the sense that the trend is almost non existing
Back in May of 2015, Carlos Sen of VMware published a video (https://www.youtube.com/watch?v=EHcT4xDyONc) on using vRLI to audit for license compliance using a License Compliance content pack. He provided no information on this nor was it linked to from the video, and I cannot find this in the Solution Exchange or anywhere else. Does this exist publicly, or something similar?
We have syslogs in LI with key-value pairs, and we'd like to show "lookup" values in LI dashboards. For example:
...bytes_in=100 protocol=6 ... or bytes_in=200 protocol=17...
We'd like to display protocols as TCP for 6 and UDP for 17 (and so on). Is there a way to do this in LI?