Retrieving log files

You can retrieve and view virtual appliance and component-specific log files to troubleshoot issues better.

About this task

The following log files are available:

Appliance
The following log files assist you to debug any configuration failures that occur in the virtual appliance:
  • Server Console
  • Server Message
  • Server Trace
  • System Log
  • Server System Out
Directory
The following are some of the log files that can assist you to identify issues in IBM® Security Directory Suite:
  • Administration Server audit log file (adminaudit.log) is used to check for suspicious patterns of activity and to detect security violations.
  • Bulkload error log file (bulkload.log) contains the status and errors that are related to bulkload.
  • DB2 CLI commands log file (db2clicmds.log) contains errors that are encountered with DB2 commands are run from the CLI.
  • Administration Server log file (ibmslapd.log) contains status and error messages that are related to the server.
  • Lost and found log (lostandfound.log) contains errors that occur as a result of a replication conflict.
  • Trace file (traceibmslapd.log) contains trace information for Directory Server or commands if tracing is enabled.
  • Server audit log file (audit.log) contains the DNs of the administrative group members and their assigned roles for each time the server starts and whenever their roles change.
  • DB2 error log file (db2cli.log) contains database errors that occur as a result of LDAP operations.
  • Administration Server log (ibmdiradm.log) contains the status and errors that are encountered by the administration server.
  • Tools log (idstools.log) contains status and error messages that are related to the configuration tools.
  • Performance tuning tool statistics file (perftune_stat.log) contains suggested performance values based on information that is gathered during the basic tuning and advanced tuning phases.

The other log files that are available are: idsadm.log, idsadmdb2.log, idsadmdb2cmds.log, db2diag.log, Federated Directory Server ibmdi.log, Federated Directory Server updateinstaller.log, Web Administration Tool console log, and Web Administration Tool messages log.

In this table, you can also view the log files that are generated when you run certain virtual appliance commands from the command-line interface. For example, if you run the idsimigr command, the log file idsimigr_cmd.out.log can be viewed.

Procedure

  1. From the top-level menu of the virtual appliance console, select Manage > Maintenance > Log Retrieval and View.
  2. Click Appliance or Directory tab to view, download, and clear the logs.
  3. In the table, select a log file.
  4. Take one of the following actions:
    • Click View to display the contents of the selected log file.
    • Click Download to download a copy of the log file.
      Restriction: The download option works only if the logs are located in the default directory for log files. See Default log paths in the IBM Security Directory Suite documentation on IBM Knowledge Center.
    • Click Refresh to display the most recent version of the log files, including changes that were made to the data since it was last refreshed.
    • Click Clear, and confirm the action to remove the contents from the selected log file.