System log severity change

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

System log severity change

Hello!

Is there a way to change the severity level of certain system log messages? The PANOS is 4.1.9

The issue we are having is that our customer is "spammed" with e-mail notifications from their HA devices that the signature versions do not match.

Both devices are scheduled to download-and-install new content every night at the same time, independantly.

The same happens with or without the "Sync to HA peer" option. We would still like to receive "high" severity alerts, but not these messages.

These are the messages:

domain: 1
receive_time: 2013/04/18 01:12:58
serial: XXXXXXXXX
seqno: 1712
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 01:12:58
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Application Content version does not match

domain: 1
receive_time: 2013/04/18 01:12:58
serial: XXXXXXXXX
seqno: 2474
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 01:12:58
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Application Content version does not match

domain: 1
receive_time: 2013/04/18 01:12:59
serial: XXXXXXXXX
seqno: 2475
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 01:12:59
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Threat Content version does not match


domain: 1
receive_time: 2013/04/18 01:12:59
serial: XXXXXXXXX
seqno: 1713
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 01:12:59
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Threat Content version does not match

domain: 1
receive_time: 2013/04/18 02:14:05
serial: XXXXXXXXX
seqno: 1731
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 02:14:05
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Anti-Virus version does not match


domain: 1
receive_time: 2013/04/18 02:14:05
serial: XXXXXXXXX
seqno: 2488
actionflags: 0x0
type: SYSTEM
subtype: ha
config_ver: 0
time_generated: 2013/04/18 02:14:05
vsys:
eventid: peer-version-match
object:
fmt: 0
id: 0
module: general
severity: high
opaque: HA Group 1: Anti-Virus version does not match

1 accepted solution

Accepted Solutions

L2 Linker

Apparently this is not possible, I was just looking for this myself.

Check out this related post:

https://live.paloaltonetworks.com/message/9196#9196

View solution in original post

3 REPLIES 3

L2 Linker

Apparently this is not possible, I was just looking for this myself.

Check out this related post:

https://live.paloaltonetworks.com/message/9196#9196

I saw that post, but it is from 2011, and he/she did not write which OS was in question...

This is a feature request.We talked this with PaloAlto last month.

  • 1 accepted solution
  • 3329 Views
  • 3 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!