General Log Insight Q&A

Vulnerability triggering from Log Insight Server

One of my clients have raised the below vulnerability for LI.

Exploit CVE ID: "CVE:2009-1016"

Unspecified vulnerability in the WebLogic Server component in Oracle BEA Product Suite allows remote authenticated users to affect confidentiality, integrity, and availability, related to IIS.

The Client has observed suspicious traffic from log insight server on port 443.

Any Information on how to remediate

Feature Requests

valid characters in email

An email address containing an ampersand (&) character was not allowed when configuring an alarm in Log Insight. Ampersand is among the valid special characters for the "local" portion of an email address, per RFC5322. In fact, MOST of the special characters allowed in the local-portion by RFC5322 are not considered valid in the Log Insight alarms. Please correct the defect in Log Insight that is preventing use of

Feature Requests

Lock widget to time frame

I would really like to Lock a Dashboard widget to a specific time frame. For example if i make a datacollection for data just within an hour or pr 6 hours, the data could be false if someone use it With another timespan. So i would like to be able to Lock a Dashboard widget to a timeframe, like 1 hour, 3 hours, 6 hours or 24 hours. This way it would be much easier to make custom widgets With events in different timespans

General Log Insight Q&A

syslog timestamp not working


I have the below three syslog entries. As it can be seen the timestamp from LI (the first one), does not match the one from the syslog msg. (This also affects the sort order in Log Insight. Making it hard to troubleshoot) Why?

I'm think it might be at the source the problem is, but I cannot see what you be wrong with this syslog msg.

2018-04-25 10:28:26 Passwordstate: Password

Feature Requests

Highlight/Colour dashboard based on widget states / highlights

When highlighting/colouring a widget is accepted as an enhancement, the next logical step would be to allow the same on dashbooard level. It would be brilliant if not only the fact that one widget changed state drives the dashboard state. You can define a logical rule how their state will be taken into account to drive the change.
E.g. Dashboard changes state/colour when all 3 widgets change state (widget1 & widget2 &

Feature Requests

Highlight/Colour widgets based on reaching certain limit/value shown

To notify someone visually when a certain/critical situation has been identified, it would be brilliant if you can highlight/colour a widget so you get the proper attention. E.g. host disconnections have been found the information mentions this is something you should investigate. How about defining there is a certain number of messages found and the widget switches it's colour to yellow/red?