Aria Operations 8.18.x
Aria Operations For Logs 8.18.x
This issue has been traced to the underlying policy associated with the alert, which is currently deactivated. Consequently, the alert is not being triggered as expected.
To resolve this issue and allow the forwarded log alerts to appear in VCF Operations, follow these steps to enable the alert definition within your active policy:
Navigate to Policies: In the VCF Operations console, go to Configure > Policies (or Configurations > Policy Definition depending on your navigation view).
Select the Policy: Locate the active policy applied to your vCenter Server objects (e.g., vSphere Solution's Default Policy or your custom operational policy) and click Edit Policy.
Access Alerts & Symptoms: In the left-hand workspace pane, click on the Alerts and Symptoms tab.
Locate the Definition: Use the filter/search bar to search for "Notification" or the exact alert name: Security: vCenter Logins by Administrator.
Verify and Activate: Check the State column for the corresponding Alert Definition and its associated Notification Symptom:
If the state shows as Deactivated , click the status icon and change it to Activated
Save Changes: Click Save to apply the updated policy configuration.