General Log Insight Q&A

New Mouse-Over feature (v4.5) - need to disable, maybe per Dashboard or globally

The new feature "Dashboard legend mouse-over in one widget now highlights corresponding chart items across widgets" is really bad on some dashboards, so that some dashboards are not useable anymore, because the screen is filled up with mouse-over informations and on some dashboards it flipps between mouse-over hints and back and back to mouse-over - because of to many informations that will be displayed and between chart ...more »

Submitted by (@thomasb)
1 comment

Voting

4 votes

Feature Requests

NSX integration in vRLI to push logging configuration to all NSX components

Provide next-level integration with NSX. Enable an administrator of vRealize Log Insight to expedite a consistent logging configuration of all NSX components within an environment, similar to that exposed for vSphere.

Submitted by (@gfritz)
Add your comment

Voting

4 votes

Feature Requests

Host Groups

It would be very useful to be able to define host groups whether the client is an agent or a syslog devices to be used in queries or to even tag events which are from these groups. It's an overhead having to create forwarding rules to tag logs on forwarders as we don't give dashboard users access to forwarders it would be much simpler to allow them to create a group of hostnames and allow that group to be used in queries. ...more »

Submitted by (@hywelburris)
Add your comment

Voting

2 votes

Collection

Blacklisting/Discarding Events

From time to time there are occasions where i really would hope that blacklisting/discarding events is implemented in vRLI. For an example we currently are flooded with log entries from our 5.5 ESXi hosts which are coming from an "BUG" which is to be fixed in a patch without ETA. But there would be countless other examples too. I'm aware that there are possibilities to achieve that. One is with agents but for ESXi that ...more »

Submitted by (@rockaut)
3 comments

Voting

3 votes

General Log Insight Q&A

upgrade from 4.3 to 4.5 failed

Upgrade Failed

Failed to create cluster snapshot

Submitted by (@syu000)
11 comments

Voting

0 votes

General Log Insight Q&A

Agents, MS Cluster Services and Logs on cluster disks

Hi, Does anyone have any experience in running LI Agent on MS failover clusters? We are trying to monitor the SQL logs and obviously the clustered drive (where the logs exist) are only mounted on one server at a time, so when the LI agent starts on each server, in the pair, one can read the logs drive and the other can't so it ignores that drive as it doesn't exist. When the cluster fails over we need a way of telling ...more »

Submitted by (@hywelburris)
5 comments

Voting

3 votes

Feature Requests

Better endpoint status

Things have improved over time and I have noted the previous feature request (http://loginsight.vmware.com/a/idea-v2/8395) however it is very difficult to manage the status of the endpoints for both agents and syslog hosts. This is important both from an operational and security point of view. Some features which would help a great deal are:- - Ability to purge the "host" page - Add last active (or last received ...more »

Submitted by (@hywelburris)
1 comment

Voting

2 votes

Feature Requests

Scheduling Export Chart Data

Log Insight only allows manuel export chart data to csv file. For example we need a VM names for a specific vCenter Alert rule past week. Also, we need counts of that alert by VM name. We can get with query that and also export chart to csv file. But scheduling that operation on weekly bases would be really nice.

Submitted by (@mcan06)
2 comments

Voting

0 votes

Content Packs

vSphere CP - [filelog|vsphere6-linux-vapi-endpoint]

The Log Path in the default Config is empty. The Logs for the vAPI Endpoint can be found in : /var/log/vmware/vapi/endpoint/

 

[filelog|vsphere6-linux-vapi-endpoint-Custom]

directory=/var/log/vmware/vapi/endpoint/

include=*.log*;*.txt*

exclude=wrapper.log*;*-gc.log*

event_marker=^\d

tags={"vmw_product":"vcenter"}

Submitted by (@markus.kraus)
1 comment

Voting

0 votes

Feature Requests

Real Time Alerts

Currently Log Insight only allows for alerts to be triggered based on batch process times. Lowest being every minute.

I have a customer that would like alerts to be triggered when a match comes in immediately. Their use case is for monitoring 1,000's of Cisco Switch Stacks for physical sites. When a switch dies or power supply dies they would like an instant alert.

Submitted by (@heathbarj)
Add your comment

Voting

2 votes

General Log Insight Q&A

Builtin vSphere dashboard queries in Log Insight not displaying host events

I noticed that some of the built-in vSphere Log Insight 4.x dashboard queries, for example, the VM Snapshots dashboard, don't seem to work correctly (or perhaps I'm not doing something correctly). The ESXi hosts are 5.5 and 6.0 hosts. For instance - If I open the "VM snapshots created" report, I see that it is filtering on "vmw_esxi_snapshot_operation" contains "create". But that does not bring up any snapshot related ...more »

Submitted by (@loginsightnewbie)
Add your comment

Voting

1 vote

General Log Insight Q&A

VCSA 6.0 syslog forwarding versus agent

Why is it that the Log Insight 4.x documentation recommends using a VCSA agent over the syslog forwarding for 6.0? Example: "For earlier versions of vSphere, while the vCenter Server Appliance does contain a syslog daemon that could be used to route logs, the preferred method is to install a vRealize Log Insight agent." Was going to setup the VCSA syslog forwarding as detailed in the following blog post: http://www.virtuallyghetto.com/2015/03/a-preview-of-native-syslog-support-in-vcsa-6-0.html ...more »

Submitted by (@loginsightnewbie)
1 comment

Voting

0 votes