How to Enable Debug Logging on CB Enterprise
book
Article ID: 291860
calendar_today
Updated On:
Products
Carbon Black EDR (formerly Cb Response)
Issue/Introduction
Enable debug logging on CB Enterprise.
Environment
- EDR Server: All supported versions
Resolution
- Edit
/etc/cb/enterprised-logger.conf - Change logger_root level from WARN to DEBUG:
Additional Information
- Debug logging can produce a lot of data. This should only be used when the problem can easily be reproduced
- The change does not require a restart of service(s).
- To disable debug logging, change the level back to WARN
Feedback
thumb_up
Yes
thumb_down
No