Title: Alarm for Remote Logging Not Configured
Alarm Description
get logging-servers, the output shows no configured remote syslog server, or the configuration is incorrect/incomplete.
VMware NSX
Centralized remote logging is a fundamental operational and security best practice within any enterprise environment. The NSX Manager actively monitors for compliance with such configurations on its managed Edge nodes. The absence of a properly configured remote syslog server directly triggers this health alarm, indicating a configuration deficiency.
To resolve this alarm and ensure proper log management, configure the affected NSX Edge nodes to forward their syslog output to a remote logging server using the NSX CLI.
Procedure:
Identify Affected Edge Nodes:
Verify Current Configuration (Optional):
get logging-serversConfigure Remote Logging Server:
From the CLI of the affected Edge node, execute the following command, replacing the placeholders with your specific details:
set logging-server <hostname-or-ip-address[:port]> proto <protocol> level <log-level>
Example:
set logging-server 10.x.x.x:514 proto udp level info
Confirm Configuration:
get logging-serversMonitor Alarm: