System monitoring filters

Prev Next

System monitoring requires filters to specify which OneSpan Authentication Server events and audit messages should be monitored.

Filter details must include the following:

  • Name

  • Target, specifying which notification method is to be used

  • Audit message type to monitor

  • Specific field

  • Condition

  • Value for the specified field

A filter defines a match criteria that must be met to trigger a notification. To define a filter, specify which level of audit message to monitor and assign a target. Messages may be further filtered by specifying a field of the audit message and a value. System monitoring will notify you when that field of an audit message contains the specified value.

The fields listed in the filter are monitored from the vdsAuditMsg table, which stores audit messages.

It is possible to assign multiple filters to a target. In that case, the notification target will only be triggered when the match criteria of all assigned filters are satisfied. For more information about recommend targets and events, see Best practices: System monitoring with SNMP/SMS/email targets.