Hi Rodrigo,
I hope your night wasn't full of nightmares :)
If even a solution based on a simple syslog server can't be deployed, I think you should be able to automate something by using ISAM REST api's.
Those api's allow you to retrieve log files of the appliance. You could then run "grep" commands on those logs.
You can check the "rapi" documentation for details on the REST apis.
------------------------------
André Leruitte
------------------------------
Original Message:
Sent: Thu July 29, 2021 08:34 AM
From: Rodrigo Xavier
Subject: Monitoring ISVA error in logs
Hi André,
I went to sleep yesterday thinking about that...:-). This would be the best approach, I think. But the customer doesn´t have an SIEM/syslog implemented.
Could you talk more about the other ways that we can achive that?
Thanks for your help!
Regards,
Rodrigo
------------------------------
Rodrigo Xavier
Original Message:
Sent: Thu July 29, 2021 05:26 AM
From: André Leruitte
Subject: Monitoring ISVA error in logs
Hi Rodrigo,
There are several ways to achieve what you are looking for, I will only talk about the one we implemented.
All our logs (webseal access logs + runtime logs + aac/federation logs) are sent into a centralised log management platform (Splunk for us).
Once indexed properly, it is then very easy in the log management tool to create alerts based on specific conditions.
Regards
------------------------------
André Leruitte
Original Message:
Sent: Wed July 28, 2021 05:24 PM
From: Rodrigo Xavier
Subject: Monitoring ISVA error in logs
Hi all,
I´d like to know if there is some way to monitor (with alerts) specific erros in ISVA logs that are linked with errors occurred during a web proxy request. I´m sending some images attached.
Regards,
Rodrigo
------------------------------
Rodrigo Xavier
------------------------------