Mark_35110
Feb 06, 2014Nimbostratus
F5 LTM 11.3.0(3144) - Syslog remote server problems
Hi all, this problem I'm having is doing my head in!
I only want to receive 'crit' to 'emerg' alerts for the cron syslog alert type, yet I am still seeing 'Info' on my remote syslog server! For the record I have followed these 3 articles:http://support.f5.com/kb/en-us/solutions/public/13000/000/sol13080.html
http://support.f5.com/kb/en-us/solutions/public/13000/300/sol13317.html http://support.f5.com/kb/en-us/solutions/public/13000/300/sol13333.htmlHere's my config:
[root@myf5:Active:Standalone] config tmsh list /sys syslog all-properties
sys syslog {
auth-priv-from notice
auth-priv-to emerg
console-log enabled
cron-from crit
cron-to emerg
daemon-from warning
daemon-to emerg
description none
include none
iso-date disabled
kern-from warning
kern-to emerg
local6-from crit
local6-to emerg
mail-from err
mail-to emerg
messages-from err
messages-to crit
remote-servers {
zenoss {
description none
host 10.140.31.6
local-ip 192.168.1.2
remote-port 514
}
}
user-log-from crit
user-log-to emerg
}
This all looks perfect to me, so I don't understand why I'm seeing these Informational cron alerts. An example alert still coming through is:
(syscheck) CMD (/usr/bin/system_check -q)
What am I doing wrong? Any help would be hugely appreciated as it's so frustrating.
Thanks