I have an agent running on a zimbra host for which ive imported into the inventory. Everything is running great except for some reason I am getting a TON of log noise when I am only monitoring for errors and only one log file.
platform.log_track.files
/opt/zimbra/log/audit.log
platform.log_track.level
ERROR
Am I missing something here I have a DOT for log entry showing up on every index. Here is a sample..
* [05/25/2011 04:52 PM] Log Message (/opt/zimbra/log/audit.log): /opt/zimbra/log/audit.log: 2011-05-25 16:51:29,772 INFO [Pop3SSLServer-6799] [ip=10.10.10.10;] security - cmd=Auth; account=info@mydomain.com; protocol=pop3;
* [05/25/2011 04:54 PM] Log Message (/opt/zimbra/log/audit.log): /opt/zimbra/log/audit.log: 2011-05-25 16:53:31,862 INFO [Pop3SSLServer-6800] [ip=66.66.66.66;] security - cmd=Auth; account=request@mydomain.com; protocol=pop3;
I have error selected why is above showing INFO type entries?
platform.log_track.files
/opt/zimbra/log/audit.log
platform.log_track.level
ERROR
Am I missing something here I have a DOT for log entry showing up on every index. Here is a sample..
* [05/25/2011 04:52 PM] Log Message (/opt/zimbra/log/audit.log): /opt/zimbra/log/audit.log: 2011-05-25 16:51:29,772 INFO [Pop3SSLServer-6799] [ip=10.10.10.10;] security - cmd=Auth; account=info@mydomain.com; protocol=pop3;
* [05/25/2011 04:54 PM] Log Message (/opt/zimbra/log/audit.log): /opt/zimbra/log/audit.log: 2011-05-25 16:53:31,862 INFO [Pop3SSLServer-6800] [ip=66.66.66.66;] security - cmd=Auth; account=request@mydomain.com; protocol=pop3;
I have error selected why is above showing INFO type entries?