Ruckus Networks
ArchivedThe Ruckus Network application normalizes Ruckus events and enables you to analyze Ruckus Wireless Access Points data. You can further customize the searches to perform in-depth analysis.
Release Details
Package Details
- Normalization Packages
- LP_Ucopia v5_0
- LP_Ruckus Generic
- LP_Ruckus Virtual SmartZone-Generic
- LP_Ruckus
Installation
Follow these steps to install the Ruckus Networks v5.0.0 application:
- Download the Ruckus Networks package from the Download section above.
- Add the required Ruckus Networks server as a device in LogPoint.
- Create a collection policy with the Syslog collector and an appropriate processing policy.
- Assign the policy to the device.
Log Formats
Ruckus Wireless Access Points
Log Sample
<134>Aug 27 12:25:45 syslog: eventd_to_syslog():User[xxxxx] fails to join WLAN[LP_crypted] from AP[ZF7372-xxxxx] Aug 28 07:30:44 syslog: eventd_to_syslog():User[LOGPOINT\xxxxx] disconnects from WLAN[ts_crypted] at AP[LP7363-xxxxx] <134>Aug 28 07:20:28 syslog: eventd_to_syslog():User[host/logpoint-thj.logpoint.intra@xx:xx:xx:xx:xx:xx] rejoins WLAN[ts_crypted] from AP[LP7363-xxxxx] <134>Aug 28 08:16:38 syslog: eventd_to_syslog():User[LOGPOINT\xxxxx] joins WLAN[LP_crypted] from AP[ZF7372-xxxxx]
Ucopia
Log Sample
Jan 22 15:53:55 cnof1050 authserver{tid=xxxxxxx} [NOTICE] Core.authserver.CoreAuthClient DRYRUN xxxxx|xxxxx|xxx.xxx.x.xxx: new user xxxxx
To export data to LogPoint, use the Syslog collector on port 514 of the LogPoint server.
Ruckus Wireless Access Points
Log Sample
<134>Aug 27 12:25:45 syslog: eventd_to_syslog():User[xxxxx] fails to join WLAN[LP_crypted] from AP[ZF7372-xxxxx] Aug 28 07:30:44 syslog: eventd_to_syslog():User[LOGPOINT\xxxxx] disconnects from WLAN[ts_crypted] at AP[LP7363-xxxxx] <134>Aug 28 07:20:28 syslog: eventd_to_syslog():User[host/logpoint-thj.logpoint.intra@xx:xx:xx:xx:xx:xx] rejoins WLAN[ts_crypted] from AP[LP7363-xxxxx] <134>Aug 28 08:16:38 syslog: eventd_to_syslog():User[LOGPOINT\xxxxx] joins WLAN[LP_crypted] from AP[ZF7372-xxxxx]
Ucopia
Log Sample
Jan 22 15:53:55 cnof1050 authserver{tid=xxxxxxx} [NOTICE] Core.authserver.CoreAuthClient DRYRUN xxxxx|xxxxx|xxx.xxx.x.xxx: new user xxxxx
To export data to LogPoint, use the Syslog collector on port 514 of the LogPoint server.
Support
If you have any questions or require assistance, create a support ticket.
Comments
Article is closed for comments.