This section describes the parameters in the page of the page.
This page provides two methods for configuring data filters: or . These methods are visible only if you select or as the export template.
This section describes the options if you select as the export template in the tab.
|
|
The option is enabled only if you enable Insight on the current ClearPass server. To do so, navigate to the > > > tab, then enable the check box. |
Figure 1 displays the >.
Figure 1 Syslog Export Filters > Filter and Columns >Insight Logs
As shown in Figure 1, administrators can select attributes as a column in Syslog Export Filters.
Custom attributes fetched by users and recorded in an endpoint are sent in syslog export filters to the Syslog server. When there is a update on endpoints, syslog events are generated.
|
|
The data collection interval for Insight logs is -4 to -2 minutes from the current time. |
Specify the >> parameters as described in the following table:
|
Parameter |
Action/Description |
|
Columns Selection |
Determine the group of reports that you want to include in the syslog filters. The column selection limits the type of records sent to the syslog filters. You can add only the Insight reports that are already created in Insight. You cannot create a new data filter for Insight logs. |
|
Predefined Field Groups |
Select the predefined Insight reports that are grouped for addition. |
|
Selected Columns |
After you select an entry from the list, click to add the selected entry to the list. Click to remove an entry from the list. |
This section describes the options if you select as the export template in the tab. On selecting , the following options are available:
allows you to choose from pre-defined field groups and to select columns based on the Type.
allows you to create a custom SQL query. You can view a sample template for the custom SQL by clicking the link below the text entry field.
|
|
It is recommended to contact support if you choose the option 2. Support can assist you with entering the correct information in this template. |
The following figure displays the tab.
Figure 2 Syslog Export Filters - Filter and Columns (Session Logs) Tab
The following table describes the >> parameters:
|
Parameter |
Action/Description |
|
Data Filter |
Specify the data filter. The data filter limits the type of records sent to the syslog target. |
|
Modify/ Add New Data Filter |
Modify the selected data filter, or add a new one. Specifying a data filter filters the rows that are sent to the syslog target. You may also select the columns that are sent to the syslog target. For more information on adding a data filter, see Adding a Data Filter . |
|
Columns Selection |
The column selection limits the type of columns sent to the syslog target. There are predefined field groups, which are column names grouped together for quick addition to the report. For example, Logged in users field group has seven predefined columns. When you click Logged in users the seven columns automatically appear in the Selected Columns list. Additional fields are available to add to the reports. You can select the type of attributes (which are the different table columns available in the session database) from the Available Columns Type drop down list. Policy Manager populates these column names by extracting the column names from existing sessions in the session database. After you select an entry from the list, click to add the selected entry to the list. Click to remove an entry from the list. |
|
Custom SQL |
Specify custom SQL query for export. This option is for advanced use cases. If you choose this option, contact Aruba Support at > > . Support can assist you with entering the correct information in this template. |