All,
I'm having a great time trying to get Event History to work with a filter
specific to certain address ranges. When activated and a query made, nothing
shows up in the workspace. If I change the Object Identification field to
pass events from all objects, I still get nothing. I've specified a period
of the last 2 days and I've confirmed that there are valid target events in
trapd.log for this timeframe. I've included the filter rules below. If
anyone can spot an error, please let me know.
For all events:
PRESENT=SNMP_TRAP && (LOGGED_TIME>=07:10:00:00:00:00) &&
(LOGGED_TIME<=09:10:00:15:37:00)
For events from specific nodes in 2 address ranges:
PRESENT=SNMP_TRAP && ((IP_ADDR=10.24.0.*) || (IP_ADDR=63.*.*.*)) &&
(LOGGED_TIME>=07:10:00:00:00:00)
&& (LOGGED_TIME<=09:10:00:15:37:00)
Are there known bugs regarding Event History that might account for this
problem?
Regards,
Steve Elliott
Sr. Network Mgmt. Engineer
epicRealm, Inc.
|