Owner's Manual
824 Events, Rules and Actions
The top two panels are like those in the Automation Event Processing Rule Editor screen.
Event
Filter Criteria on page 818
describes how you can select the correlated event(s).
NOTE:
This application tries to match syslog messages that are essentially redundant except for their time
stamp. If you escalate such messages to alarms, then this matching process will alter the time stamp to
the time the message was received by the application, not when it was generated.
The
Configured Syslog Escalation Criteria
panel at the bottom is unique to configuring syslog
escalation. Click
Add
to create a new escalation criterion, or
Edit
to modify an existing, selected
one. Select a criterion and click
Delete
to remove it from the list. The editor (for
Add
or
Edit
) has
the following fields:
-
Message match text
—This is the syslog text in which a match must occur before escalation
occurs. Enter text to match in the field to the right of this label, then click the
New
icon to
the right of the list to enter it in the list. You can also
Edit
and
Remove
list members with the
icons to the right of the list.
-
Match Any
—Check this to match any text listed in the
Message match text
rather than requiring
all such text be present before a match occurs.
-
Category
—Enter a syslog category to match. This is a user-defined classification present here to
assist in categorizing the escalation criteria.
-
Event Severity
— Select from the pick list to select a severity to match.
-
Message Pattern
— If you want to further refine a text match, enter a regular expression that
matches the desired text in this field.
Click
Apply
to accept your edits, or
Cancel
to abandon them.