Creating Alert Syslog Templates

provides a default template for alerts sent to syslog.

If you do not want to use the default template, you can create your own alert syslog templates, and select one to use as a default instead. Using your own template lets you add more information to alert syslog messages.

  1. Log in to the console as an auditor.

  2. Select Settings and then select Alert Syslog Templates in the left navigation menu.

  3. In the Alert Syslog Templates page, select Create.

  4. In the Create Alert Syslog Template page, enter a Name for the new template, and optionally enter the Description.

  5. Select the Event Information that you want to include in syslog alerts from .

    The alert syslog message will be formatted as a list of event records containing all fields you select in the template. The short event name (shown in parentheses) will be used.

    If you select Include “Error Message (EM)” as part of the syslog payload, then this option lengthens the syslog message so that some data may be truncated.

  6. If you want to make this the default template, then select Save as default template under Other options.

    The default alert syslog template is used for all alert syslog messages.

  7. Select Save.

    See Also: Logging in to the Console