infoblox_nios:logging
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| infoblox_nios:logging [2025/07/08 09:51] – [Audit Log Rolling] bstafford | infoblox_nios:logging [2025/12/07 13:07] (current) – bstafford | ||
|---|---|---|---|
| Line 3: | Line 3: | ||
| REMEMBER! If you have query logging enabled, if the box is busy then you can easily build up to the point where all logs only go back 1 hour and the support bundle is 3.3Gb. | REMEMBER! If you have query logging enabled, if the box is busy then you can easily build up to the point where all logs only go back 1 hour and the support bundle is 3.3Gb. | ||
| + | ===== Query Logging Warning ===== | ||
| + | NIOS 9.0.7 introduced a useful warning when query/ | ||
| + | |||
| + | You can disable the warning with: | ||
| + | < | ||
| + | < | ||
| ===== Syslog Errors ===== | ===== Syslog Errors ===== | ||
| Line 38: | Line 44: | ||
| * audit.log.8 | * audit.log.8 | ||
| * audit.log.9 | * audit.log.9 | ||
| + | ===== Backup Logs ===== | ||
| + | |||
| + | Succeful backup via SCP generates the following syslog | ||
| + | * Facility: Daemon | ||
| + | * Level: Notice | ||
| + | * Server: scheduled_scp_backups | ||
| + | * Message: Scheduled backup to the SCP server was successful - Backup file / | ||
| + | |||
| + | Successful backup locally generates the following syslog | ||
| + | * Facility: Daemon | ||
| + | * Level: Notice | ||
| + | * Server: manage_scheduled_backups | ||
| + | * Message: Backup to LOCAL was successful - Backup file / | ||
| + | |||
| ===== DTC Logging ===== | ===== DTC Logging ===== | ||
| Line 104: | Line 124: | ||
| * daemon NOTICE named[3391445] running | * daemon NOTICE named[3391445] running | ||
| + | ====== RPZ Loggging ===== | ||
| + | RPZ_SEVERITY | ||
| + | * Informational = 4 | ||
| + | * Warning = 6 | ||
| + | * Major = 7 | ||
| + | * Critical = 8 | ||
| + | |||
| + | |||
| + | MITIGATION_ACTION | ||
| + | * A1 = Substitute | ||
| + | * PT = Passthru | ||
| + | * NX = No Such DOMAIN_NAME | ||
| + | * ND = No Domain | ||
| + | |||
| + | Log Breakdown | ||
| + | * TIMESTAMP=2025-05-28 12:39:26, | ||
| + | * VIEW=_default, | ||
| + | * CLIENT=192.168.1.2, | ||
| + | * RPZ_SEVERITY=7, | ||
| + | * DOMAIN_NAME=www.slashdot.org, | ||
| + | * RPZ_QNAME=www.slashdot.org.forward-control, | ||
| + | * MITIGATION_ACTION=A1, | ||
| + | * REDIRECTION_RECORD=N/ | ||
| + | * CAT=RPZ: | ||
| + | * GST=0, | ||
| + | * LID=N/A | ||
| + | | ||
| + | < | ||
| + | | ||
| + | < | ||
| + | | ||
| + | < | ||
| + | | ||
infoblox_nios/logging.1751968287.txt.gz · Last modified: by bstafford
