Citrix NetScaler Administration Guide

priority

A numeric value that indicates when this policy is evaluated relative to others. A lower priority is evaluated before a higher one.

To globally bind the audit policy

1.In the navigation pane, expand System, expand Auditing, and then click Policies.

2.In the details pane, on the Policies tab, click Global Bindings.

3.In the Bind/Unbind Auditing Global Policies dialog box, click Insert Policy.

4.Select the policy from the drop-down list that appears under Policy Name, and then click OK.

A message appears in the status bar, stating that the auditing policy has been globally bound.

Configuring Policy-Based Logging

You can configure policy-based logging for rewrite and responder policies. Audit messages are then logged in a defined format when the rule in a policy evaluates to TRUE. To configure policy-based logging, you configure an audit-message action that uses default syntax expressions to specify the format of the audit messages, and associate the action with a policy. The policy can be bound either globally or to a load balancing or content switching virtual server. You can use audit-message actions to log messages at various log levels, either in syslog format only or in both syslog and newnslog formats.

Pre Requisites

wUser Configurable Log Messages (userDefinedAuditlog) option is enabled for when configuring the audit action server to which you want to send the logs in a defined format. For more information about enabling policy-based logging on a audit action server, see Binding the Audit Policies Globally on page 78.

wThe related audit policy is bound to system global. For more information about binding audit policies to system global, see Binding the Audit Policies Globally on page 78.

Configuring an Audit Message Action

You can configure audit message actions to log messages at various log levels, either in syslog format only or in both syslog and newnslog formats. Audit-message actions use expressions to specify the format of the audit messages.

To create an audit message action by using the NetScaler command line

At the NetScaler command prompt, type:

add audit messageaction <name> <logLevel> <stringBuilderExpr> [-logtoNewnslog (YES NO)] [-bypassSafetyCheck (YESNO)]

79

Page 79
Image 79
Citrix Systems CITRIX NETSCALER 9.3 Configuring Policy-Based Logging, To globally bind the audit policy, Pre Requisites