Guest

Preview Tool

Cisco Bug: CSCuj14117 - UC Monitoring via Syslog, timestamp format notRFC 542

Last Modified

Oct 07, 2016

Products (2)

  • Cisco Unified Communications Manager IM & Presence Service
  • Cisco Unified Presence Version 8.6

Known Affected Releases

8.6(4)

Description (partial)

Symptom:
Line break of syslog messages being sent to 3rd party syslog server Splunk are causing them to be misread and malformed.

Conditions:
It appears the problem is only seen in versions below 9.x.

++Good Box++

Hostname: cup-em301-ams
System version: 9.1.1.10000-8

Remote Syslog Configuration for Cisco AMC Service:-
Remote Syslog Server: syslog-uc.esl.cisco.com
Alarm Event Level: Notice

++Bad Box++

Hostname: cup-ap201-hkg
System version: 8.6.4.11900-1

Remote Syslog Configuration for Cisco AMC Service:-
Remote Syslog Server: syslog-uc.esl.cisco.com
Alarm Event Level: Informational
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.