Monitoring Policy Wizard: Specify the data capturing options
Use this page in the wizard to further customize the way the data is filtered and captured. Note: The options available to you depend on the type of monitoring policy you create or edit.
Upload entire log file to FTP
When a log event matches the monitoring criteria, uploads the entire log file to the FTP site. You must have the FTP site already configured. For more information, see Setting Up an FTP Location for Monitoring Policies to Upload Log Files.
Select Analytics Engine
Lists the Analytics engines that you configured for monitoring. The engine is configured during the setup of the Log Monitoring or System Monitoring application and is used to index the data that is defined in the monitoring policy.
Age Analytics data after n days
When selected, you can specify the number of days that you want to retain the content indexed data. The data that is older than the specified number of days will be aged and either pruned or archived. For information on archiving the aged data, see Archiving Aged Analytics Data in Log Monitoring.
Use Cloud Policy
When selected, the analytics engine defined in the cloud monitoring policy you choose indexes the data captured by the current monitoring policy. Cloud policies appear in the Use Cloud Policy list after they are configured in Control Panel > Cloud Policy Configuration. For information on configuring cloud policies, see Configuring a Cloud Policy for Log Monitoring.
Capture log file header (Top n lines in log file)
When selected, the log file header is captured. The number of lines that make up the log header is defined in the monitoring policy template in the Number of lines in log file header box.
Skip files with modification time older than n days
When selected, log files that did not change in seven or more days are skipped. You can change the number of days.
Skip events older than n days
When selected, Windows events that took place seven or more days ago are skipped. You can change the number of days.
Index only future data (ignore existing data)
When selected, the log data that was generated before the monitoring policy creation is excluded from the monitoring process. When the policy runs for the first time, only the meta data information (such as current line number, offset, and file unique ID) is collected.
When not selected, the policy monitors the old log data based on the specified monitoring criteria.
Automatically discover fields (Available for Text Log Files monitoring policies)
When selected, log files containing key value pairs separated by the following delimiters are automatically added to the facet list in the Log Monitoring application:
- = (equal sign)
- [ ] (brackets)
- ( ) (parentheses)
The OnePass subclient that will backup and archive aged analytics data. The analytics data is aged based on the Age Analytics data after n days check box. For information on archiving the aged data, see Archiving Aged Analytics Data in Log Monitoring.