<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic No Device Name or IP Address in Syslog Alarm in ExtremeCloud IQ- Site Engine Management Center</title>
    <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75332#M8526</link>
    <description>&lt;P&gt;I have created a Syslog Alarm that I receive via email, but I’m not receiving any information that tells me which device the alarm came from.&amp;nbsp; I have enabled every keyword.&amp;nbsp; Here is what I currently have configured for the Action Override:&lt;/P&gt;&lt;P&gt;$alarmName&amp;nbsp;&amp;nbsp; &amp;nbsp;The name of the alarm.&lt;BR /&gt;$alarmSource&amp;nbsp;&amp;nbsp; &amp;nbsp;The component (such as a device) that raised the alarm.&lt;BR /&gt;$alarmSourceName&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;$alarmSubcomponent&amp;nbsp;&amp;nbsp; &amp;nbsp;The subcomponent (such as an interface) that raised the alarm.&lt;BR /&gt;$severity&amp;nbsp;&amp;nbsp; &amp;nbsp;The alarm severity.&lt;BR /&gt;$type&amp;nbsp;&amp;nbsp; &amp;nbsp;The value returned is always "Alarm".&lt;BR /&gt;$trigger&amp;nbsp;&amp;nbsp; &amp;nbsp;Indicates whether the trigger was a trap or event.&lt;BR /&gt;$server&amp;nbsp;&amp;nbsp; &amp;nbsp;The NetSight server IP address.&lt;BR /&gt;$time&amp;nbsp;&amp;nbsp; &amp;nbsp;The date and time when the event or trap occurred.&lt;BR /&gt;$message&amp;nbsp;&amp;nbsp; &amp;nbsp;The event message.&lt;BR /&gt;$eventType&amp;nbsp;&amp;nbsp; &amp;nbsp;The event type (event or trap).&lt;BR /&gt;$eventSeverity&amp;nbsp;&amp;nbsp; &amp;nbsp;The event severity.&lt;BR /&gt;$eventCategory&amp;nbsp;&amp;nbsp; &amp;nbsp;The event category.&lt;BR /&gt;$eventTitle&amp;nbsp;&amp;nbsp; &amp;nbsp;The event message.&lt;BR /&gt;$deviceIP&amp;nbsp;&amp;nbsp; &amp;nbsp;The IP address of the device that is the source of the alarm.&lt;BR /&gt;$deviceIpCtx&amp;nbsp;&amp;nbsp; &amp;nbsp;The device IP and Context.&lt;BR /&gt;$deviceNickName&amp;nbsp;&amp;nbsp; &amp;nbsp;The device nickname.&lt;BR /&gt;$deviceBootProm&amp;nbsp;&amp;nbsp; &amp;nbsp;The BootProm version on the device.&lt;BR /&gt;$deviceFirmware&amp;nbsp;&amp;nbsp; &amp;nbsp;The firmware version on the device.&lt;BR /&gt;$deviceStatus&amp;nbsp;&amp;nbsp; &amp;nbsp;The device status.&lt;BR /&gt;$snmp&amp;nbsp;&amp;nbsp; &amp;nbsp;The device SNMP credentials&lt;BR /&gt;$sysName&amp;nbsp;&amp;nbsp; &amp;nbsp;The system name.&lt;BR /&gt;$sysLocation&amp;nbsp;&amp;nbsp; &amp;nbsp;The system location.&lt;BR /&gt;$sysContact&amp;nbsp;&amp;nbsp; &amp;nbsp;The system contact.&lt;BR /&gt;$sysDescr&amp;nbsp;&amp;nbsp; &amp;nbsp;The system description&lt;BR /&gt;$sysUpTime&amp;nbsp;&amp;nbsp; &amp;nbsp;The system uptime.&lt;BR /&gt;$chassisId&amp;nbsp;&amp;nbsp; &amp;nbsp;The chassis ID.&lt;BR /&gt;$chassisType&amp;nbsp;&amp;nbsp; &amp;nbsp;The chassis type.&lt;BR /&gt;$trapName&amp;nbsp;&amp;nbsp; &amp;nbsp;The trap name.&lt;BR /&gt;$trapEnterprise&amp;nbsp;&amp;nbsp; &amp;nbsp;The Enterprise for this trap (Extreme, snmpTraps, rmonEventsV2, dot1dBridge) as defined in the trapd.conf file.&lt;BR /&gt;$trapOid&amp;nbsp;&amp;nbsp; &amp;nbsp;The trap OID.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The ones that are working are:&lt;/P&gt;&lt;P&gt;$alarmName&amp;nbsp;&amp;nbsp; &amp;nbsp;The name of the alarm.&lt;BR /&gt;$alarmSource&amp;nbsp;&amp;nbsp; &amp;nbsp;The component (such as a device) that raised the alarm.&lt;/P&gt;&lt;P&gt;$type&amp;nbsp;&amp;nbsp; &amp;nbsp;The value returned is always "Alarm".&lt;BR /&gt;$trigger&amp;nbsp;&amp;nbsp; &amp;nbsp;Indicates whether the trigger was a trap or event.&lt;BR /&gt;$server&amp;nbsp;&amp;nbsp; &amp;nbsp;The NetSight server IP address.&lt;BR /&gt;$time&amp;nbsp;&amp;nbsp; &amp;nbsp;The date and time when the event or trap occurred.&lt;/P&gt;&lt;P&gt;$eventType&amp;nbsp;&amp;nbsp; &amp;nbsp;The event type (event or trap).&lt;BR /&gt;$eventSeverity&amp;nbsp;&amp;nbsp; &amp;nbsp;The event severity.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 20 Oct 2020 01:36:55 GMT</pubDate>
    <dc:creator>cslayton</dc:creator>
    <dc:date>2020-10-20T01:36:55Z</dc:date>
    <item>
      <title>No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75332#M8526</link>
      <description>&lt;P&gt;I have created a Syslog Alarm that I receive via email, but I’m not receiving any information that tells me which device the alarm came from.&amp;nbsp; I have enabled every keyword.&amp;nbsp; Here is what I currently have configured for the Action Override:&lt;/P&gt;&lt;P&gt;$alarmName&amp;nbsp;&amp;nbsp; &amp;nbsp;The name of the alarm.&lt;BR /&gt;$alarmSource&amp;nbsp;&amp;nbsp; &amp;nbsp;The component (such as a device) that raised the alarm.&lt;BR /&gt;$alarmSourceName&amp;nbsp;&amp;nbsp; &amp;nbsp;&lt;BR /&gt;$alarmSubcomponent&amp;nbsp;&amp;nbsp; &amp;nbsp;The subcomponent (such as an interface) that raised the alarm.&lt;BR /&gt;$severity&amp;nbsp;&amp;nbsp; &amp;nbsp;The alarm severity.&lt;BR /&gt;$type&amp;nbsp;&amp;nbsp; &amp;nbsp;The value returned is always "Alarm".&lt;BR /&gt;$trigger&amp;nbsp;&amp;nbsp; &amp;nbsp;Indicates whether the trigger was a trap or event.&lt;BR /&gt;$server&amp;nbsp;&amp;nbsp; &amp;nbsp;The NetSight server IP address.&lt;BR /&gt;$time&amp;nbsp;&amp;nbsp; &amp;nbsp;The date and time when the event or trap occurred.&lt;BR /&gt;$message&amp;nbsp;&amp;nbsp; &amp;nbsp;The event message.&lt;BR /&gt;$eventType&amp;nbsp;&amp;nbsp; &amp;nbsp;The event type (event or trap).&lt;BR /&gt;$eventSeverity&amp;nbsp;&amp;nbsp; &amp;nbsp;The event severity.&lt;BR /&gt;$eventCategory&amp;nbsp;&amp;nbsp; &amp;nbsp;The event category.&lt;BR /&gt;$eventTitle&amp;nbsp;&amp;nbsp; &amp;nbsp;The event message.&lt;BR /&gt;$deviceIP&amp;nbsp;&amp;nbsp; &amp;nbsp;The IP address of the device that is the source of the alarm.&lt;BR /&gt;$deviceIpCtx&amp;nbsp;&amp;nbsp; &amp;nbsp;The device IP and Context.&lt;BR /&gt;$deviceNickName&amp;nbsp;&amp;nbsp; &amp;nbsp;The device nickname.&lt;BR /&gt;$deviceBootProm&amp;nbsp;&amp;nbsp; &amp;nbsp;The BootProm version on the device.&lt;BR /&gt;$deviceFirmware&amp;nbsp;&amp;nbsp; &amp;nbsp;The firmware version on the device.&lt;BR /&gt;$deviceStatus&amp;nbsp;&amp;nbsp; &amp;nbsp;The device status.&lt;BR /&gt;$snmp&amp;nbsp;&amp;nbsp; &amp;nbsp;The device SNMP credentials&lt;BR /&gt;$sysName&amp;nbsp;&amp;nbsp; &amp;nbsp;The system name.&lt;BR /&gt;$sysLocation&amp;nbsp;&amp;nbsp; &amp;nbsp;The system location.&lt;BR /&gt;$sysContact&amp;nbsp;&amp;nbsp; &amp;nbsp;The system contact.&lt;BR /&gt;$sysDescr&amp;nbsp;&amp;nbsp; &amp;nbsp;The system description&lt;BR /&gt;$sysUpTime&amp;nbsp;&amp;nbsp; &amp;nbsp;The system uptime.&lt;BR /&gt;$chassisId&amp;nbsp;&amp;nbsp; &amp;nbsp;The chassis ID.&lt;BR /&gt;$chassisType&amp;nbsp;&amp;nbsp; &amp;nbsp;The chassis type.&lt;BR /&gt;$trapName&amp;nbsp;&amp;nbsp; &amp;nbsp;The trap name.&lt;BR /&gt;$trapEnterprise&amp;nbsp;&amp;nbsp; &amp;nbsp;The Enterprise for this trap (Extreme, snmpTraps, rmonEventsV2, dot1dBridge) as defined in the trapd.conf file.&lt;BR /&gt;$trapOid&amp;nbsp;&amp;nbsp; &amp;nbsp;The trap OID.&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The ones that are working are:&lt;/P&gt;&lt;P&gt;$alarmName&amp;nbsp;&amp;nbsp; &amp;nbsp;The name of the alarm.&lt;BR /&gt;$alarmSource&amp;nbsp;&amp;nbsp; &amp;nbsp;The component (such as a device) that raised the alarm.&lt;/P&gt;&lt;P&gt;$type&amp;nbsp;&amp;nbsp; &amp;nbsp;The value returned is always "Alarm".&lt;BR /&gt;$trigger&amp;nbsp;&amp;nbsp; &amp;nbsp;Indicates whether the trigger was a trap or event.&lt;BR /&gt;$server&amp;nbsp;&amp;nbsp; &amp;nbsp;The NetSight server IP address.&lt;BR /&gt;$time&amp;nbsp;&amp;nbsp; &amp;nbsp;The date and time when the event or trap occurred.&lt;/P&gt;&lt;P&gt;$eventType&amp;nbsp;&amp;nbsp; &amp;nbsp;The event type (event or trap).&lt;BR /&gt;$eventSeverity&amp;nbsp;&amp;nbsp; &amp;nbsp;The event severity.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 01:36:55 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75332#M8526</guid>
      <dc:creator>cslayton</dc:creator>
      <dc:date>2020-10-20T01:36:55Z</dc:date>
    </item>
    <item>
      <title>Re: No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75333#M8527</link>
      <description>&lt;P&gt;Here is the device config:&lt;/P&gt;&lt;P&gt;configure syslog add 10.243.80.80:514 vr VR-Default local0&lt;BR /&gt;configure log target syslog 10.243.80.80:514 vr VR-Default local0 from 10.98.97.234&lt;BR /&gt;enable log target syslog 10.243.80.80:514 vr VR-Default local0&lt;BR /&gt;configure log target syslog 10.243.80.80:514 vr VR-Default local0 filter DefaultFilter severity Debug-Data&lt;BR /&gt;configure log target syslog 10.243.80.80:514 vr VR-Default local0 match Any&lt;BR /&gt;configure log target syslog 10.243.80.80:514 vr VR-Default local0 format timestamp seconds date Mmm-dd event-name condition priority host-name tag-name&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 01:48:27 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75333#M8527</guid>
      <dc:creator>cslayton</dc:creator>
      <dc:date>2020-10-20T01:48:27Z</dc:date>
    </item>
    <item>
      <title>Re: No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75334#M8528</link>
      <description>&lt;P&gt;Cslayton,&lt;/P&gt;&lt;P&gt;there was an issue with source hostname and Ip as alarm source. This issue was fixed with version 8.5.0. Maybe your problem is related to the same issue.&lt;/P&gt;&lt;P&gt;What version of XMC are you using?&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 02:00:22 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75334#M8528</guid>
      <dc:creator>StephanH</dc:creator>
      <dc:date>2020-10-20T02:00:22Z</dc:date>
    </item>
    <item>
      <title>Re: No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75335#M8529</link>
      <description>&lt;P&gt;8.3.1.9&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 02:20:00 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75335#M8529</guid>
      <dc:creator>cslayton</dc:creator>
      <dc:date>2020-10-20T02:20:00Z</dc:date>
    </item>
    <item>
      <title>Re: No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75336#M8530</link>
      <description>&lt;P&gt;Ok,&lt;/P&gt;&lt;P&gt;In Version 8.3 the mentioned problem occures. Therefore update your XMC to the latest version and test again, please.&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 02:23:52 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75336#M8530</guid>
      <dc:creator>StephanH</dc:creator>
      <dc:date>2020-10-20T02:23:52Z</dc:date>
    </item>
    <item>
      <title>Re: No Device Name or IP Address in Syslog Alarm</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75337#M8531</link>
      <description>&lt;P&gt;For completeness, I have done a short test. With 8.5.1.60 both the IP and the name is transferred.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 20 Oct 2020 11:48:33 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-iq-site-engine/no-device-name-or-ip-address-in-syslog-alarm/m-p/75337#M8531</guid>
      <dc:creator>StephanH</dc:creator>
      <dc:date>2020-10-20T11:48:33Z</dc:date>
    </item>
  </channel>
</rss>

