I'm not sure if this is possible or not? I have many syslog devices configured either using the Windows Agent or direct with many firewalls in between Log Insight Servers and Forwarders. I'm trying to find a practical way to alert when no Syslog Data is received from a device (i.e. 24 hours) and an alert is sent to vROPS, any ideas?
Not possible today. Please vote for this feature request at http://loginsight.vmware.com/a/dtd/Alert-when-log-source-is-not-sending-logs/70723-24427
Not possible today. Please vote for this feature request at http://loginsight.vmware.com/a/dtd/Alert-when-log-source-is-not-sending-logs/70723-24427