OS SYS LOG

Hi all,
11.2.0.1
Aix 6.1
I have implemented OS sys log using:
*.audit_file_dest='/var/log/oracle/oracle'
*.audit_sys_operations=TRUE
*.audit_trail='OS'
*.audit_syslog_level='LOCAL5.INFO'
But I can not understand why in the sys log I got lots of DBSNMP  users being audited?
Oct  3 16:22:44 PROD-SVR local4:info Oracle Audit[19005494]: LENGTH: "322" SESSIONID:[7] "2087629" ENTRYID:[1] "1" STATEMENT:[1] "1" USERID:[6] "DBSNMP" USERHOST:[7] "PROD-SVR" ACTION:[3] "100" RETURNCODE:[1] "0" COMMENT$TEXT:[100] "Authenticated by: DATABASE; Client address: (ADDRESS=(PROTOCOL=tcp)(HOST=xxx.xxx.xxx.xxx)(PORT=41770))" OS$USERID:[6] "oracle" DBID:[9] "175864947" PRIV$USED:[1] "5"
Oct  3 16:22:44 IST-UAT local4:info Oracle Audit[19005494]: LENGTH: "222" SESSIONID:[7] "2087629" ENTRYID:[1] "1" USERID:[6] "DBSNMP" ACTION:[3] "101" RETURNCODE:[1] "0" LOGOFF$PREAD:[1] "0" LOGOFF$LREAD:[2] "58" LOGOFF$LWRITE:[1] "0" LOGOFF$DEAD:[1] "0" DBID:[9] "175864947" SESSIONCPU:[1] "1"
What is causing the sys audit to log lots of the above?
Thanks a lot

you have all you have set.
do you know what is the meaning of *.audit_syslog_level='LOCAL5.INFO'?
You can't configure audit file as "critical" and question why you  have critical alerts in your logs.....
for more info:
AUDIT_SYSLOG_LEVEL
https://forums.oracle.com/thread/833592
Don't play with parameters that you don't know or you will end badly. First read, try and question....

Similar Messages

  • Deleted sys.log in error

    i was trying to clear out the sys.log but the clear logg sys.log has deleted this and i can't see how to recreate it.
    anyone know?
    thanks
    sam

    Chris,
    the CSS will create it automatically when a new log message needs to be saved into the sys.log file.
    Regards,
    Gilles.

  • EM shows alert "User SYS logged on from node but no entry in SYS.AUD$

    Hello,
    When i look on the alert page of my databases i see sometimes the following message "User SYS logged on from <node>.
    I have setup several audit actions, like "create session" to track sessions.
    But in table SYS.AUD$ i see many records, but not the one of user SYS.
    Why? Anyone an idea?
    Best regards,
    hvdtol

    i understand it is comming from metrics, but i don't understand why i can see it in the sys.aud$ table.
    hvdtol

  • Sys log trigger in cluster database

    Hi Experts,
    We have 3 nodes cluster database. How do we create a sys log trigger in cluster database?
    Do I need to create a system log trigger at each database instance in 3 node(instance) cluster database? or only create one system log trigger in one instance?
    Thanks
    Jin

    A RAC database is a single database with many instances: one database means one logon trigger.
    You just need to create the logon trigger when connected to any instance of the same database.

  • How many sys log trigger can be created

    Hi Friends,
    We have an an application that set a sys log trigger in 10G database .
    We can not modify vendor system log trigger.
    Could we create second sys log trigger to other audit purpose ? any performance that can be caused by second sys log trigger?
    Thanks
    Jin

    What is being logged with syslog and how often? If you trigger it 1000times every second, then yes, it may affect your performance. If it is once every hour, no.
    There are ways better than syslog to audit a database. Read about AUDIT command in SQL docs.

  • Can anyone help explain this reoccurring sys log?

    I've tried to track down this event that keeps on repeating so much its making my system log reach almost 60mb! Below is a copy of the log...
    Jun 21 07:14:15 localhost kernel: USBF: 16123.117 IOUSBInterface[0x2fadb00]::handleOpen failing because super::handleOpen failed (someone already has it open)
    ...Do I have some USB device bummin out my system? Such as a USB hub causing a conflict or something? If anyone knows how I can possibly cure or even track down the cause of this reoccurring event, that would be awesome!
    MUCHO THANKS!
    PowerMac G4 1.25GHZ   Mac OS X (10.3.9)  

    R.E.BELL...
    First of all how long has it been that you ran any type of a utility that clears out your System Logs? Yasu (outside link) is my favorite and well named. Tip is to never let your logs get into that 60MB condition.
    As far as the error goes, unless it is choking on it or something isn't working, I would say it is a benign, harmless, or oops! kind of an error.
    ...Ron

  • Shutdown Under Mtn. Lion Taking 5 Times Longer - Sys Log Included

    I realize that there are a couple of other threads dealing with this issue, but they have veered off into directions that don't apply to my systems.  I'm posting a copy of my system log below--which looks pretty odd given what I'm experiencing.
    Background:  I have two mid-2011 MacBook Airs...a 13-inch with a 256GB SSD and an 11-inch with a 128GB SSD.  The only difference in terms of installed software is that the 256GB model has more iTunes media files.  They are both running Mtn Lion 10.8.0 with all available updates.  Under Lion (all versions), my average shutdown time on both machines was  from 2-3 seconds.  Now, under Mtn. Lion, the shutdown time averages from 12 to 15 seconds.  It's really consistent in that 12 to 15 second range. 
    When I decided to troubleshoot this issue, I figured it would be easy because I thought that the system log would clearly indicate what was taking the extra time.  However, I've posted the relevant part of my system log at the end of this message.  It shows no seconds of elapsed time during the shutdown--but, as indicated my my comments added to the log--the actual showdown time until the screen went black was about 14 seconds.
    Based on comments in other threads, I tried deleting all of my launchdaemons but that didn't help.  Also, I don't have Parallels installed--which seemed to be implicated as a problem in other threads.
    Does anyone have any ideas?  The system log is below.  Thanks.
    Aug 15 07:50:59 SGN-MacBook-Air13.local com.apple.SecurityServer[15]: Succeeded authorizing right 'com.apple.ServiceManagement.daemons.modify' by client '/usr/libexec/launchdadd' [248] for authorization created by '/System/Library/PrivateFrameworks/Admin.framework/Versions/A/Resources/writeco nfig' [249] (100002,0)
    Aug 15 07:50:59 SGN-MacBook-Air13.local ntpd[250]: proto: precision = 1.000 usec
    COMMENT: SHUTDOWN INITIATED
    Aug 15 07:51:30 SGN-MacBook-Air13.local WindowServer[75]: CGXGetConnectionProperty: Invalid connection 43011
    Aug 15 07:51:30 --- last message repeated 4 times ---
    Aug 15 07:51:30 SGN-MacBook-Air13.local WindowServer[75]: dict count after removing entry for window 0x1c is 0
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] ([0x0-0x12012].com.google.GmailNotifier[194]): Exited: Killed: 9
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435459 (ipc/send) invalid destination port from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=132
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435460 (ipc/send) timed out from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=215
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] (jp.co.canon.CUPSCMFP.BackGrounder[187]): Exited: Terminated: 15
    Aug 15 07:51:30 SGN-MacBook-Air13.local loginwindow[56]: sendQuitEventToApp (Canon CMFP BackGrounder): AESendMessage returned error -600
    Aug 15 07:51:30 SGN-MacBook-Air13.local loginwindow[56]: sendQuitEventToApp (Canon PS BackGrounder v3): AESendMessage returned error -600
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] (jp.co.canon.CUPSPS2.BackGrounder[186]): Exited: Terminated: 15
    Aug 15 07:51:30 SGN-MacBook-Air13.local loginwindow[56]: sendQuitEventToApp (UFR II BackGrounder): AESendMessage returned error -600
    Aug 15 07:51:30 SGN-MacBook-Air13.local UserEventAgent[11]: Captive: [UserAgentDied:139] User Agent @port=16647 Died
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435459 (ipc/send) invalid destination port from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=181
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435460 (ipc/send) timed out from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=185
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435460 (ipc/send) timed out from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=167
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] (jp.co.canon.UFR2.BackGrounder[185]): Exited: Terminated: 15
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] ([0x0-0x1c01c].com.apple.AppleSpell[216]): Exited: Terminated: 15
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] (com.apple.UserEventAgent-Aqua[172]): Exited: Killed: 9
    Aug 15 07:51:30 SGN-MacBook-Air13.local blued[34]: -[CBManager init] init returning self:0x7f8e90600270
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] ([0x0-0x25025].com.apple.TextEdit[237]): Exited: Killed: 9
    Aug 15 07:51:30 SGN-MacBook-Air13 com.apple.launchd.peruser.501[135] (com.apple.mdworker.shared.04000000-0000-0000-0000-000000000000[232]): Exited: Killed: 9
    Aug 15 07:51:30 SGN-MacBook-Air13.local coreservicesd[32]: SendFlattenedData, got error #268435460 (ipc/send) timed out from ::mach_msg(), sending notification kLSNotifyApplicationDeath to notificationID=125
    Aug 15 07:51:30 SGN-MacBook-Air13.local loginwindow[56]: DEAD_PROCESS: 56 console
    Aug 15 07:51:30 SGN-MacBook-Air13.local airportd[260]: _doAutoJoin: Already associated to “noibsnet”. Bailing on auto-join.
    Aug 15 07:51:30 SGN-MacBook-Air13.local WindowServer[75]: CGXGetConnectionProperty: Invalid connection 43011
    Aug 15 07:51:30 --- last message repeated 4 times ---
    Aug 15 07:51:30 SGN-MacBook-Air13.local NotificationCenter[161]: Connection interrupted.
    Aug 15 07:51:30 SGN-MacBook-Air13.local shutdown[263]: halt by scottnewman:
    Aug 15 07:51:30 SGN-MacBook-Air13.local shutdown[263]: SHUTDOWN_TIME: 1345038690 408010
    COMMENT: LOG SHOWS VIRTUALLY NO SECONDS OF ELAPSED TIME; HOWEVER, USING A WATCH I TIMED THE SHUTDOWN TIME AS ABOUT 14 SECONDS UNTIL SCREEN WENT BLACK!!!
    Aug 15 07:52:48 localhost bootlog[0]: BOOT_TIME 1345038768 0
    Aug 15 07:52:50 localhost kernel[0]: PMAP: PCID enabled
    Aug 15 07:52:50 localhost kernel[0]: Darwin Kernel Version 12.0.0: Sun Jun 24 23:00:16 PDT 2012; root:xnu-2050.7.9~1/RELEASE_X86_64

    Thanks; however, doing a SafeBoot was one of the first things I tried.  Also, I always SafeBoot after any type of system software install or update.
    However, I may have solved my own problem.  In the log entry I posted, I was surprised to see references to several Canon backgrounder apps.  Then I remembered that I had installed some Canon print drivers/software for a high-end, networked, ImageRunner printer/scanner that is available to me in my work area at the college I work for.  Because of other hardware available to me, I've never used it as a printer or scanner.  Further, after checking on the Canon Web site, I realized that the software I installed was not the latest available.
    I used FindAnyFile to locate all Canon ImageRunner drivers and software installed on my system and deleted it.  I then manually deleted all logs and caches and rebooted.  So far, my shutdowns are back in the 2-3 second range.  I'm keeping my fingers crossed.
    This won't help others who are having a similar problem except that they might look for background apps being quit during the shutdown process and to make sure that whatever software they came from is Mtn. Lion compatible.

  • My imac crashed - 'kernel panic' indicated in sys log

    Hi all,
    My 2009 iMac just crashed - pretty much for the first time since I bought it in May 2009. This has me really worried -- because the last time that a Mac crashed on me (a G4 MacPro several years ago) it was because the hard drive (and maybe the motherboard) had died.
    The system report indicated 'kernel panic' and when i looked at the details, it specifically mentioned something about the cpu. I'm on my laptop typing this now, as I'm 'Verifying Disk' on the iMac. Should I be freaked out? I use the iMac for work - I work from home - and though I do have all of my files backed up on external disks, the thought of having to reinstall all of my software is upsetting - as is the fear that I might need a new hard drive.
    Any useful thoughts on my situation would be appreciated.
    Thanks!
    Jon

    A rare KP is normally nothing to be too concerned about, however if you begin having them regularly then please repost and post the report. You can find it at: /Library/Logs/DiagnosticReports . Because KP's can be caused by either software or hardware on occasion they can be difficult to track down. Until then if you want study up a little on them please read:
    How to log a kernel panic
    Kernel Panics
    About "You need to restart your computer" (kernel panic) messages
    Mac OS X 10.6 Help: If “You need to restart your computer” appears
    Mac OS X Kernel Panic FAQ

  • Does this sys.log means anything? SBBOD problem again

    hi guys, the SBBOD has been haunting me ever since i turned on my mac this afternoon. I opened up the console and there's this whole wall of text which i need u guys to help me decipher. I'm hoping the root of the problem can be identified in these messages
    Jun  5 14:57:09 unknown_78-ca-39-b6-96-5f com.apple.launchd.peruser.501[109] ([0x0-0x12012].com.apple.Safari[157]): Exited: Terminated
    Jun  5 15:01:43 unknown_78-ca-39-b6-96-5f /Applications/Safari.app/Contents/MacOS/Safari[248]: ATS AutoActivation: Query timed out. (elapsed 5.0 seconds.  params: queryString = {com_apple_ats_name_postscript == "Tahoma" && kMDItemContentTypeTree != com.adobe.postscript-lwfn-font}, valueListAttrs = {<CFArray 0x115f476b0 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5c2d0 [0x7fff709abee0]>{contents = "kMDItemContentType"}\n)}}, sortingAttrs = {<CFArray 0x115f476f0 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5c490 [0x7fff709abee0]>{contents = "kMDItemContentModificationDate"}\n)}}, scopeList = {<CFArray 0x115f54020 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5f270 [0x7fff709abee0]>{contents = "kMDQueryScopeComputer"}\n)}}.)
    Jun  5 15:01:53 unknown_78-ca-39-b6-96-5f /Applications/Safari.app/Contents/MacOS/Safari[248]: ATS AutoActivation: Query timed out. (elapsed 5.0 seconds.  params: queryString = {com_apple_ats_name_postscript == "Arial" && kMDItemContentTypeTree != com.adobe.postscript-lwfn-font}, valueListAttrs = {<CFArray 0x115f7e610 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5c2d0 [0x7fff709abee0]>{contents = "kMDItemContentType"}\n)}}, sortingAttrs = {<CFArray 0x115f7e650 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5c490 [0x7fff709abee0]>{contents = "kMDItemContentModificationDate"}\n)}}, scopeList = {<CFArray 0x115f7e690 [0x7fff709abee0]>{type = immutable, count = 1, values = (\n          0 : <CFString 0x7fff70a5f270 [0x7fff709abee0]>{contents = "kMDQueryScopeComputer"}\n)}}.)
    Jun  5 15:02:41 unknown_78-ca-39-b6-96-5f [0x0-0x29029].com.adiumX.adiumX[259]: ** (process:259): CRITICAL **: purple_presence_set_status_active: assertion `status != NULL' failed
    Jun  5 15:02:46: --- last message repeated 265 times ---
    Jun  5 15:02:46 unknown_78-ca-39-b6-96-5f [0x0-0x29029].com.adiumX.adiumX[259]: SocketRead: read(5) error 0
    Jun  5 15:02:46 unknown_78-ca-39-b6-96-5f [0x0-0x29029].com.adiumX.adiumX[259]: SocketRead err = -9802
    Jun  5 15:05:01 unknown_78-ca-39-b6-96-5f com.apple.launchd.peruser.501[109] ([0x0-0x29029].com.adiumX.adiumX[259]): Exited: Killed
    Jun  5 15:05:01 unknown_78-ca-39-b6-96-5f Safari[248]: INSERT-HANG-DETECTED: Tx time:100.157069, # of Inserts: 2, # of bytes written: 31197, Did shrink: NO
    Jun  5 15:05:10 unknown_78-ca-39-b6-96-5f com.apple.launchd.peruser.501[109] ([0x0-0x21021].org.mozilla.firefox[198]): Exited: Terminated
    Jun  5 15:06:02 unknown_78-ca-39-b6-96-5f [0x0-0x2b02b].com.adiumX.adiumX[290]: ** (process:290): CRITICAL **: purple_presence_set_status_active: assertion `status != NULL' failed
    Jun  5 15:06:06: --- last message repeated 265 times ---
    Jun  5 15:06:06 unknown_78-ca-39-b6-96-5f [0x0-0x2b02b].com.adiumX.adiumX[290]: SocketRead: read(5) error 0
    Jun  5 15:06:06 unknown_78-ca-39-b6-96-5f [0x0-0x2b02b].com.adiumX.adiumX[290]: SocketRead err = -9802
    Most of the time it occurs in Safari and i had to force quit the browser. =\
    Please help!!

    I believe you were already answered here:
    Is this a possible bug on the Facebook app for iPhone?
    Given your level of concern about this video. You may want to move it out of your camera roll. Move it to your computer or to a DropBox account or similar.

  • OSB Log file

    OSB logging using message flow logs the messages to domain admin server log file.
    is it possible to route the OSB logs to a central logging system such as sys logs?

    You will need to create some Java classes that implement the log4j framework and expose some static methods that will have logger statements.
    For ex: Create One java class call SBLogger. This should have the implementation for a log4j logger by reading a log4j.xml or log4j.properties file. And create one static method like logMessage(str LoggerName, strLogMessage, strLogLevel). Inside this method create a logger with the strLoggerName and then have the corresponding logger.debug() or logger.info() type statements based on the log level. Or you can create different methods one each for debug, info , etc... log levels like logDebugMessage(message).
    Once you have tested this externally, create a jar file (with the *.class of the log4j implementation) and upload this to the osb console are jar. Ensure that you place the log4j properties file in the config folder of the osb domain, so that osb will be able to load it when it starts up. [After placing the log4j.xml file, you will need to restart the domain for it take effect]
    Now using java callout, you can invoke the corresponding logging methods, which will log into the files depending on the log4j.properties appender configuration.
    For changing the loglevels on the fly you can refer to a solution given by Ananth @ http://ananthkannan.blogspot.com/2009/10/how-to-change-log-levels-on-fly-using.html
    Hope this information will help you to proceed with the implementation. Do let me know in case you run into issues.
    Thanks,
    Patrick

  • Could you tell me what's the meaning of the logfile-path and log-level?

    we are running an productive xml database. but it is not stable now. Sometime it would report resource conflict error while you access xmldb via http protocol. I read the database logs and listener logs, but no abnormal message could be found. So, I want to find more information from the xmldb logs. While I run select DBMS_XDB.cfg_get().getclobval() from dual, I found that there are several logfile-path and log-level tags and I guess that these would be xmldb logs. Does anyone know what's the meaning of these tags?

    I wondered about that one often too. I didn't have a chance yet to investigate (but maybe Mark will elaborate a little here), my guess is that it / or will be a possibility to enable tracing regarding the protocols or servlets.
    Though It look like if you enable it it will trace to the XML file defined in the xdbconfig.xml. I also guess that (because there is also a XSD counterpart) that one could create an resource that streams the errors into a XDB ftp or http or ... xmltype table based on these settings.
    This would be great because it would mature the protocol server regarding functionality. You could enable the tracing and see what happens. Until now the documentation doesn't give much extra insight...
    <!-- FTP specific -->
    <element name="ftpconfig">
    <complexType><sequence>
    <element name="ftp-port" type="unsignedShort" default="2100"/>
    <element name="ftp-listener" type="string"/>
    <element name="ftp-protocol" type="string"/>
    <element name="logfile-path" type="string" default="/sys/log/ftplog.xml"/>
    <element name="log-level" type="unsignedInt" default="0"/>
    <element name="session-timeout" type="unsignedInt" default="6000"/>
    <element name="buffer-size" default="8192">
    <simpleType>
    <restriction base="unsignedInt">
    <minInclusive value="1024"/> <!-- 1KB -->
    <maxInclusive value="1048496"/> <!-- 1MB -->
    </restriction>
    </simpleType>
    </element>
    <element name="ftp-welcome-message" type="string" minOccurs="0"
    maxOccurs="1"/>
    </sequence></complexType>
    </element>
    <!-- HTTP specific -->
    <element name="httpconfig">
    <complexType><sequence>
    <element name="http-port" type="unsignedShort" default="8080"/>
    <element name="http-listener" type="string"/>
    <element name="http-protocol" type="string"/>
    <element name="max-http-headers" type="unsignedInt" default="64"/>
    <element name="max-header-size" type="unsignedInt" default="4096"/>
    <element name="max-request-body" type="unsignedInt" default="2000000000"
    minOccurs="1"/>
    <element name="session-timeout" type="unsignedInt" default="6000"/>
    <element name="server-name" type="string"/>
    <element name="logfile-path" type="string"
    default="/sys/log/httplog.xml"/>
    <element name="log-level" type="unsignedInt" default="0"/>
    <element name="servlet-realm" type="string" minOccurs="0"/>
    ...etc...

  • Send logs to syslog

    How to send weblogic server ---- access.log,server.log,server.out to sys log on solaris.

    The router does not have the feature where you can save the logs to a notepad, why not click on Open in Browser and then copy and paste the results to a notepad or wordpad so that you can go ahead and send it thru email.
    Please check link below how to enable logs in the router:
    Title: Enabling the Logs feature of the Linksys Smart Wi-Fi Router using local access
    Article ID: 26579

  • Log files filling up rapidly

    I have noticed that each time I mount a smbfs share the wireless network fails after a couple of minutes, and has to be reset. The log files seem to be filling up rapidly.
    The daemon and sys log contain similar lines.
    Jan 2 21:51:34 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    Jan 2 21:51:40 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 1
    Jan 2 21:53:48 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    Jan 2 21:53:54 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 1
    Jan 2 21:56:03 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    Jan 2 21:56:09 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 1
    Jan 2 21:58:10 TOSHIBA-User gdmgreeter[21619]: Gtk-CRITICAL: gtk_tree_view_get_selection: assertion `GTK_IS_TREE_VIEW (tree_view)' failed
    Jan 2 21:58:10 TOSHIBA-User gdmgreeter[21619]: Gtk-CRITICAL: gtk_tree_selection_unselect_all: assertion `GTK_IS_TREE_SELECTION (selection)' failed
    Jan 2 21:58:10 TOSHIBA-User gdmgreeter[21619]: Gtk-CRITICAL: gtk_tree_selection_select_iter: assertion `GTK_IS_TREE_SELECTION (selection)' failed
    Jan 2 21:58:10 TOSHIBA-User gdmgreeter[21619]: Gtk-CRITICAL: gtk_tree_view_scroll_to_cell: assertion `GTK_IS_TREE_VIEW (tree_view)' failed
    Jan 2 21:58:17 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    Jan 2 21:58:23 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 1
    Jan 2 21:58:41 TOSHIBA-User NetworkManager: <info> Updating allowed wireless network lists.
    Jan 2 22:00:31 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    Jan 2 22:00:37 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 1
    Jan 2 22:02:45 TOSHIBA-User NetworkManager: <info> Supplicant state changed: 0
    This might have some bearing on anther issue already logged
    Any ideas?
    malcolli

    Further reading and checking log files it appears that this may be two faults.
    The NetwokManager and the Gnome Display Manager.
    Now to find out more.
    malcolli

  • CSS 11800 show many server up/down message in log file

    My customer use css 11800 running 6.10 Build 304 software for server load-blance
    I config default http keepalive to probe the server status like below.
    service WWW2
    ip address 163.29.x.x
    keepalive type http
    active
    service WWW3
    ip address 163.29.x.x
    keepalive type http
    active
    Since last week,I found many server up/down message in sys.log file
    SEP 20 01:22:36 7/1 1145 NETMAN-2: Enterprise:Service Transition:dpsvr2 -> down
    SEP 20 01:22:41 7/1 1146 NETMAN-2: Enterprise:Service Transition:amd52 -> down
    SEP 20 01:24:26 7/1 1147 NETMAN-5: Enterprise:Service Transition:amd52 -> alive
    SEP 20 01:24:56 7/1 1148 NETMAN-5: Enterprise:Service Transition:dpsvr2 -> alive
    SEP 20 03:20:06 7/1 1149 NETMAN-2: Enterprise:Service Transition:WWW3 -> down
    SEP 20 03:20:16 7/1 1150 NETMAN-5: Enterprise:Service Transition:WWW3 -> alive
    SEP 20 07:00:57 7/1 1151 NETMAN-2: Enterprise:Service Transition:www5 -> down
    SEP 20 07:01:11 7/1 1152 NETMAN-5: Enterprise:Service Transition:www5 -> alive
    The server status change down to up,almost during 20 sec only,and We can access the server without any problem at the same time
    Does this is a software bug.If not,How do I trace this problem,thks!!

    capture a sniffer trace to see exactly what's going on.
    Going to the server with a browser may work because using GET/POST method, but the CSS configured the way you did will use a HEAD method which could be a problem for your server.
    The server could be slow to respond as well.
    Try to increase the keepalive frequence since the timeout is linked to the frequency.
    Finally, you may want to configure a url to poll with the command 'keepalive uri .....'
    Once again, by simply sniffing between the CSS and the server, you will know exactly where is the problem.
    Gilles.

  • What's going on with this log entry?

    kernel[0]: BUG in process suhelperd[199]: over-released legacy external boost assertions (1 total, 1 external, 0 legacy-external)
    And more to the point, how can I correct it. This is repeated many times in the sys log.

    Don't you suspect a functional problem when the system generates hundreds of iterations of an entry?
    I don't suspect anything. If I have a functional problem, I know about it without having to read the log. That's what a functional problem is. If you have one, please describe it, or better yet, start a new thread with a full description.

Maybe you are looking for