Tech Tip: NV - Event Log Filtering

Document created by DavidM Employee on Aug 25, 2015Last modified by DavidM Employee on Aug 26, 2015
Version 5Show Document
  • View in full screen mode

The Event Log can be used for troubleshooting various problems which relate to a specific service. Each of the NV services have an option to set Logging Level to Normal (Verbose) which will result in all available messages going into the Event Log.

 

Note these verbose messages will only be displayed in the event log window and will not be saved into the database.

 

Two of the most common reasons are for polling overruns and discovery failures when a dataset fails to get added to a device. The idea is to first enable verbose logging for the particular service involved and then open an event log window and set a filter to exclude unwanted entries. Additionally multiple Event Log windows can be opened each with its own filter.

 

Note: This is to be done via a remote connection into the Poller and not at the MC.

 

For overruns:

Find the overrun messages in the Event Log.

For example:

ifstats(Fast): Polling did not complete due to a polling cycle overrun

rttstats(Normal): Polling did not complete due to a polling cycle overrun

qosclass(Fast): Polling did not complete due to a polling cycle overrun

 

Now go to Console > Services > Polls > Logging Level: Normal (Verbose)

 

Next Console > Tools > Event Log > Edit > Set Filters

Now at each tab check only these items:

Severity & Ackn: Normal, Acknowledged, Unacknowledged

Message & Time check 'Match message' and enter the first part of the message from the log such as ifstats(Fast): or rttstats(Normal):.

Type: Polling

Source: Polls

 

Click OK and wait through the next few polling cycles.

Then, File > Save > Filtered

 

Here is a sample message.

ifstats(Fast): Polling for 10.241.251.71 did not complete due to a polling cycle overrun, was 82 percent complete (1505/1826)

To be more meaningful the logging needs to be left in place for some time to get a better understanding. For example if the same devices keep showing or if each time investigate them.

 

 

For discovery:

Locate the device in the Groups tree

Open the Event Log > Tools > Event Log > Edit > Set Filters Now at each tab check only these items:

Severity & Ackn: leave everything selected Message & Time: leave it blank

Type: deselect all

Source: Topology

Go to Services > Topology > set Logging Level to Normal (Verbose)

Now right click on the device > Rediscover

When the discovery of the device is finished then go to the Event Log window > File > Save > All Events.

Attachments

    Outcomes