Feature Requests

Let us know what will make Log Insight even better!  Add new ideas & vote on other feature ideas to let us know what's important to you.

Feature Requests

Additional time ranges

Currently there are only some few time ranges possible: 5 minutes, 1h, 1d, 2d and custom. With custom only possible to define a fixed range. It would be nice to have a greater range of options. I love how Graylog is managing that. You can, for instance, define "Since Midnight" and then getting all message... well you guest it... since midnight. Or "Last Week", Today, Last Month ... you get it. For starting it would be ...more »

Submitted by (@rockaut)
1 comment

Voting

2 votes

Feature Requests

high availability of data across workers

I'd looking for more than one copy of each unit of log data in order to survive the loss of individual node, similar to splunk. Maybe this takes the form of shipping closed Cassandra buckets (although that would not provide cover for recently ingested data).

 

Ideally, I could use this to provide support for loss of a worker within an AZ, or even the loss of an entire region.

Submitted by (@nthaler)
4 comments

Voting

3 votes

Feature Requests

NSX integration in vRLI to push logging configuration to all NSX components

Provide next-level integration with NSX. Enable an administrator of vRealize Log Insight to expedite a consistent logging configuration of all NSX components within an environment, similar to that exposed for vSphere.

Submitted by (@gfritz)
Add your comment

Voting

4 votes

Feature Requests

Host Groups

It would be very useful to be able to define host groups whether the client is an agent or a syslog devices to be used in queries or to even tag events which are from these groups. It's an overhead having to create forwarding rules to tag logs on forwarders as we don't give dashboard users access to forwarders it would be much simpler to allow them to create a group of hostnames and allow that group to be used in queries. ...more »

Submitted by (@hywelburris)
Add your comment

Voting

2 votes

Feature Requests

Better endpoint status

Things have improved over time and I have noted the previous feature request (http://loginsight.vmware.com/a/idea-v2/8395) however it is very difficult to manage the status of the endpoints for both agents and syslog hosts. This is important both from an operational and security point of view. Some features which would help a great deal are:- - Ability to purge the "host" page - Add last active (or last received ...more »

Submitted by (@hywelburris)
1 comment

Voting

2 votes

Feature Requests

Scheduling Export Chart Data

Log Insight only allows manuel export chart data to csv file. For example we need a VM names for a specific vCenter Alert rule past week. Also, we need counts of that alert by VM name. We can get with query that and also export chart to csv file. But scheduling that operation on weekly bases would be really nice.

Submitted by (@mcan06)
2 comments

Voting

0 votes

Feature Requests

Real Time Alerts

Currently Log Insight only allows for alerts to be triggered based on batch process times. Lowest being every minute.

I have a customer that would like alerts to be triggered when a match comes in immediately. Their use case is for monitoring 1,000's of Cisco Switch Stacks for physical sites. When a switch dies or power supply dies they would like an instant alert.

Submitted by (@heathbarj)
Add your comment

Voting

2 votes

Feature Requests

Integrate with vCenter's PSC

Integrate Log Insight's authentication with vCenter's PSC. vROPs has a great integration with the PSC which can be used as a model.

Currently we must statically add AD DC as a source which will eventually change and then AD authentication will be lost until manually re-configured.

Submitted by (@jasonjuha)
10 comments

Voting

22 votes

Feature Requests

Change Port NUmber

I have a scenario where my environment is highly restricted behind a firewall. Due to license restrictions I am very limited to what ports I am allowed to allow through the firewall. I would like to be able to change the port that is used for the ingestion API which appears to be limited to port 9543. It would also be nice to change between TCP and UDP if possible.

Submitted by (@chorning)
1 comment

Voting

1 vote

Feature Requests

Improvement to query lists

Query lists can get quite large with dozens or hundreds of items inside. Allow the user to sort the query list by result. E.g. if a query returns "Has Results" show them on top. This makes it easier to focus on the relevant results. In addition the title bar of a query list shall display the amount of queries. Once the user has executed them (green play button), also display the amount of queries with "Has Results". ...more »

Submitted by (@v9bvohzrgzdeogn5)
2 comments

Voting

3 votes

Feature Requests

Perform API Queries using Extracted Fields

When using the API to perform a query, we are unable to use extracted fields are constraints when defining the query.

 

NOTE: Although the query returns extracted fields, it does not accept extracted fields.

Submitted by (@dsaojosevmware.com)
Add your comment

Voting

4 votes

Feature Requests

Problem with Home dashboard after removing content pack

I had a previous request about this, and the response was to just change URL /home to get around it.

Well in the New Version 4.3 i removed a content pack, and got same problem, but now /home Returns me to the full url With the content pack that fails. There must be a way to check if the content pack exists, and if not redirect you to my Dashboard.

Submitted by (@ronny.berntzen)
1 comment

Voting

1 vote