Network Management

Create Syslog or Trap discard rule in Log Viewer or Log Analyzer

This article proves information on how to create Syslog or Trap discard rule for Log Viewer or Log Analyzer.

First published date

8/11/2021 9:52 AM

Last published date

9/22/2025 3:59 PM

Overview

The Syslog or Trap discard rule is needed when facing the issue below:

  • The disk space of the OrionLogDatabase is growing fast.
  • The memory usage of the Syslog/Trap service is high.

Product section

Network Performance Monitor

Cause

The Log Viewer will store all the incoming Syslog/Trap send from the source node by default and the volume could be very large in a large environment.

Resolution

  1. Login to the SolarWinds Platform web console, go to Settings > All Settings > Log and Event Settings.
  2. Expand Syslog or Trap, select My Custom Rules and click Create a Rule:
    • image.png
  3. Enter the Rule Name and click Next:
    • image.png
  4. On the Conditions tab, add the Rule Condition according to your requirements and the following is the sample for any source and the specific severity:
    • image.png
  5. On the Action tab, add the action 'Flag for discard' and 'Stop processing rules', result as below::
    • image.png
  6. Review the setting on the Summary tab and save it:
    • image.png