Log Insight Content Pack for Cisco Nexus | VMware Cloud Management - VMware Blogs
Would love to see the feedback on this Content Pack on this Discussion.
Hi, we have some nexus series switch (7000-5000-3000-2000) configured for Layer 2 and 3 (with bgp routing) and my network admin have configured them to send log to loginsight but I only see 2 kind of log: interface up/down (on interface performance dashboard) and login failed attempt. I'm not sure they configured correctly but on the Solution Exchange Tech Spec page of the Content pack the instructions seems to not be "complete".
Anyone configured/used this content pack and can help me with the correct command to give to my network administrators?
Thanks
Francesco
Hello,
Filed a defect on your behalf and tracking this issue ...will get back to you soon.
Thanks,
-Yogita.
Any news on this one?
Do you have at least the list of command to send to nx switches to setup them correctly?
Apologies for not following up. The Solution Exchange posting has been updated and directions are available under the Tech Specs section. Please try it out and let me know if it works for you!
I've saw that but it seems wrong.... copy pasting from the tech spec page it seems to miss something con that list of commands..
for example "severity" is explained but I don't see it in the example commands..
Tech Specs
1) Standard VLCP Content Pack download and installation for Log Insight
2) The following configuration is needed on Nexus switches in order to configure Log Insight as a remote syslog server and forward the logs directly to LI instance.
switch# configure terminal
switch(config)# logging server [[use-vrf [facility ]]]
(Optional) switch(config)# no logging server host
(Optional) switch# show logging server
(Optional) switch# copy running-config startup-config
= IP address or host name of Log Insight instance
= The severity-level argument limits the logging of messages to the Log Insight instance to a specified level. Severity levels range from 0 to 7
= vrf-name keyword argument identifies the default or management values for the VRF name. If a specific VRF is not identified, management is the default.
= The facility argument names the syslog facility type e.g aaa, aclmgr, authpriv etc
It is recommended to use highest level of severity and maximum number of facility to generate high number of syslog messages and send it to Log Insight instance in order to make the best use of the content pack.
You can find the official Cisco Nexus directions on the Cisco site here: Cisco Nexus 7000 Series NX-OS System Management Configuration Guide, Release 5.x - Configuring Syste...