There are multiple central logging infrastructures available in the market: Splunk, Kibana, Logstash, Graylog etc.
RA still writes log files to various files somewhere on the NAC, NES, Agents. Getting log informations from deployments to a central logging infrastructure is still a big issue.
- Enable RA to send log informations to logging infrastructures like Splunk, Graylog etc.
- Provide action packs to send logging messages to the desired logging infra structure or eventually the RA globally configured one.
- Provide action packs that allow to read custom logs and send the content to the logging infra structure e.g. for capturing some script logs or application server deployment and startup logs etc.
Searching for deployment error messages in an e.g. graylog infrastructure is much simpler than searching somewhere in the deep of target systems.
Please vote for it!