Administrator's Guide

Network Node Screen
General Operations
Chapter 7
109
Saving a Log File Set
A log file set is the combination of the alert log file and the error log file.
Alerts and errors are saved at the same time. Alerts go into a file named
filesetname
_alerts.log. Errors go into a file named
filesetname
_errors.log.
filesetname
is the name that you assign.
NOTE The Network Node screen’s title bar indicates how you obtained the data on the screen.
If it consists of “Network Node -
hostname
”, where
hostname
is the host name of a
monitored host, then the data is from the master log file for that host and you selected
the Network Node screen from the System Manager screen.
If it consists of “Network Node -
pathname
”, where
pathname
is the full path name of a
file (probably in /var/opt/ids/gui/logs), then the data is from a log file set that you
selected with the File > Open menu item.
Saving the Current Log File Set
To save the current log file set into the log file set displayed in the window title bar,
Step 1. From the Network Node screen, do one of
Choose the File > Save menu item
Press Ctrl-S
The alert and error log files are saved in /var/opt/ids/gui/logs, overwriting files
filesetname
_alert.log and
filesetname
_error.log.
Saving a New Log File Set
NOTE You cannot use this method to save into the log file set of any host that has an entry
(monitored or not) in the host list on the Host Manager screen.
To save the current log file set into a file set with a different name
Step 1. From the Network Node screen, display the Save dialog box (Figure 7-4) with one of:
Choose the File > Save As menu item