Question of syslog VCS

Everything started working with VCS/TMS, group get our syslogs asks me a few questions.  The events are connected on the syslog seem to correspond to events since the events and Configuration logs, but do not seem network logs appears.

Here are the specs:

VCS - ver7.1

Under system > Logging > Log level = 2

Not sure if this is normal or not?

Hi David,

syslog on VCS only provides the event logs. He also noted the network logs but relating to SIP messages. see the Administrator's guide for x7.1 for more updates.

http://www.Cisco.com/en/us/docs/Telepresence/infrastructure/VCs/admin_guide/Cisco_VCS_Administrator_Guide_X7-1.PDF

Assigned level events

Level

1

High-level events such as registration and attempts to call. Easily human-readable. For example:

call n attempt/connected/disconnected

n record attempt/accepted/rejected

Level

2

All level 1 events, more:

n logs of sent and received messages Protocol (SIP, H.323, LDAP, etc.) excluding loud messages

as H.460.18 KeepAlive and video H.245 fast-updates

Level

3

All level 1 and level 2 Events, more:

Protocol n KeepAlive

n SIP calls and signaling messages

Level

4

The more detailed level: all level 1, level 2 and level 3 events, more:

SIP n network level messages

You can control which events are logged by the VCS by setting the log level. All events with a level

numerically equal to and below that the specified logging level are recorded in the event log. Thus, at level 1,

Only level 1 events are recorded; at level 2, level 1 and level 2 events are recorded and so on. The default journal

level is 1.

Note that:

n logging at level 3 or 4 is usually not recommended because the event log may contain a maximum of 2 GB of data

and logging at these levels on a busy system can cause the event log be recycled too quickly.

Thank you

Alok

Tags: Cisco Support

Similar Questions

  • Questions of Virtual VCS

    Hi all

    I played with the VMWare VCS inage we bought.  I currently have it running on my primary production ESXi server, and it works fine.  I'm preparation/testing of recovery after a disaster.  So I created a virtual RESUME OVF, however when I restore the FVO to my secondary server ESXi the VCS change S/Ns and all keys are then invalid.  Am I missing something?

    Thank you

    Justin

    Hi Justin,

    It is as expected. Well free to stop people buying one and then cloinging.

    Thank you

    Guy

  • VCS called Ip address routing

    Hello

    I have a question about my VCS control configuration.

    In my scenario, I have control of Vcs and Vcs Express Way.

    I implemented the rule in VCS control:

    .. .the problem: same end point not working with a record keeper and only receive an IP calls. The ip call go all in internet (from the Expressway)

    -----------------------------------------------------------------------------

    Source: AllZones

    Mode: All IP addresses

    On correspondence: continue

    Target: Path (VCS Express Way area)

    ------------------------------------------------------------------------------

    If I call a point of endpoints in the Internet, everything works fine, but if I have to call via ip address, endpoint Internel network (with ip address 10.x.x.x), he call go Express Way.

    I want to put in the control of VCS, rules that use the direct dial plan for all internel ip address (which begins 10.*) and use the indirect numbering plan for the call "unknow ip address."

    Thanks for your help

    FCostalunga

    Hi FC,.

    You can solve this problem by creating a subarea on the VCS control where the subzone membership rule contains subnets with the range of the IP intern (s). For subareas containing the IP address ranges, IP addresses that fall within these ranges is considered known to the VCS, and when endpoint composed one of these addresses IP control VCS will try to set up the call to the IP address itself rather than attempt to transmission by proxy, the call through highway.

    To do this, you must also a rule of search "AnyIPAddress" on your VCS control that points to the local area.

    For reference, I recommend you read through the "Component IP" section in the Administrator's guide from the VCS for X 7, which explained further on the subject.

    Out of curiosity, why you prefer calling IP addresses rather than h.323/SIP URI?

    Hope this helps,

    Andreas

  • VCS - numbering of the IPS 'known' search rules

    Hello

    We have a standard configuration of VCS-C/VCS-E, with VCS - C, the value 'indirect', VCS-E the 'direct' for calls to unknown IP addresses. It works very well.

    The problem is we have a second remote desktop on MPLS which points of Polycom endpoints (not enrolled in the VCS) and they can be reached via IP address, but they are inside the LAN. I can only call them if I change the 'direct' VCS - C since I see no way to create a search rule targeting a specific range of IP addresses - it will not allow the models for comparison with IP addresses!

    Am I missing something here?

    (Edit: Alok beat me to it)

    Thomas,

    on the VCS - C, you can create one or more subfields with 'subnet' membership of type rules where you add IP addresses or subnets that you want to be able to deal directly via the VCS - C.

    No matter what IP address that corresponds to a membership rule subarea for a subzone is considered "Known" VCS in question, which allows VCS to make the call to this IP address directly.

    This is described in the VCS Administrator's guide in component IP "section:

    The VCS considers that an IP address to be "known" if she is:

    -is the IP of a locally registered endpoint
    -Beach one of the membership rules configured subarea on the VCS to address intellectual property statement

    In addition to this, need a search rule "AnyIPAddress" for the local area on the RESUME said.

    Hope this helps,

    Andreas

  • Question of VCS rehost keys/transfer option

    • Customer SCV was RMA and purchased options reheberges/transferred orig keys. SN to the new replacement.
    • Orig. VCS is still in Production.

    Question: Will impact entering the option on the new replacement buttons and put online the original aircraft still in production?

    This will not affect anything, keys options that were transferred from the VCS failed the new one does not reference the old device somehow.  The process of transfer/rehost just allows you to get even or like keys options for your replacement that matches the old device you send to Cisco.

    You will also need to contact the vendor or whoever the service contracts were purchased through them for having updated to take account of the RAM, so the old serial number may be replaced by a new one, you have received.  This process occurs automatically when a RMA or rehost is finished.

  • Question of marking DSCP QoS VCS.

    I want to audio/video/signaling traffic values recommended in the SRND QoS of Medianet 4.0 in our VCS (video Communication Server).  The recommendations are for audio and interactive video the same signalling to CS3 and CS4.

    However, when I web in the VCS management application, there are only two drop-down boxes for QoS/DSCP marking. A box should allow to 'media' DSCP or not. The other box is to enter the DSCP value.

    I guess that the "media" are video and audio.

    Three questions:

    1. "media" means the audio and video packets?

    2. any reason why traffic is not part of the functions of the VCS - DSCP marking or is this configuration point somewhere else in the GUI?

    3. If there is no way for VCS mark signaling packets, then it to the next layer (the switch) to mark packets of signaling?

    jkeefee,

    I understand where you are coming, and feature requests already exist for VCS for the increase of the QoS configuration options, including the marking of different for audio, video and signage and interface, area and subarea specific marking as well.

    Since there are a wide range of feature requests for VCS (as with most of our products), it is always advantageous to put as much weight as possible behind each application, as applications who demand most of the customers are those who is likely to be implemented and improved first.

    I would advise, so reach out to your Cisco account manager to report your need more capabilities of QoS on the VCS, so that it can be forwarded to the VCS product management.

    Hope this helps,

    Andreas

  • Jabber & the question of control of VCS - Inbound TLS negotiation error

    I'm just creating Jabber and control VCS. When I try to connect to Jabber I get a message "Unable to connect to server."

    In the event on the VCS log, I see the following:

    TVCS: Event = "Inbound TLS negotiation error" Service = "SIP" Src - ip = "192.168.111.124" Src-port = "49206" Dst - ip = "10.80.14.111" Dst - port - retail "5061" = "Timeout".

    When I connect to the VCS Expressway everything works great so it doesn't seem to be a provisioning question.

    Any help would be great

    Jon

    Hi Jon,

    so you are saying I can deduce that refine us this firewall problem. Now, I want to know something more.

    If you have Cisco ASA then according to me, there is a map of class set making match of highway traffic in this branch on port 5061 that is TLS?

    can you tell me if you have a few feature phone or else proxy on the firewall?

    Thank you

    Alok

  • Question about the design of VCS-C/VCS-E

    Hello

    Customer has no DMZ. So, what are my options to configure a deployment of VCS-C/VCS-E?

    How is it I could reach the goal that VCSC and VCSe contact area of neighbor?

    Do I need to assign an internal IP address (without static nat) and LAN2 in also an IP address in-house with NAT static external IP LAN1.

    Prerequisite for which is 'Dual touch Option NIC', no?

    At the moment I have no double key Option of NIC, then the only way in my deployment is the DMZ preffered way, right? Or make me another option?

    Concerning

    Thorsten

    Well, in this case, you can have the VCS-E in public, VCS - C behind the firewall and an area between the two.

    You can increase the security nat'ing and with who use dual NICs on the VCS-E option.

    I also either turn off or at least to block SSH on VCS-E to the public.

    Deployment Guide:

    http://www.Cisco.com/en/us/docs/Telepresence/infrastructure/VCs/config_guide/Cisco_VCS_Basic_Configuration_Cisco_VCS_Control_with_Cisco_VCS_Expressway_Deployment_Guide_X7-1.PDF

    /Jens

  • Question record DNS SRV + VCS Expressway

    Hi all

    I have a South, VCS in the DMZ, and I am facing a problem with the SRV DNS records.

    VCS Expressway Hostname:-VCSe

    Domain: example.com

    FULL VCSE domain name: VCSe.example.com

    and I have an a record set up for the same FQDN in DNS Public Server.

    I have a sip domain configured as 'cisco.com' in my VCS Expressway.

    What is the SRV records, I need to create in the Public DNS server.

    Kind regards

    Nikhil Jayan

    Nikhil,

    It seems that you have not checked the link I sent you earlier... A very explicit documents. in any case that we talked about earlier is we were talking about signs send calls to the highway as well as parts of the record.

    In your deployment, you have a different domain for DNS and SIP domain. Also as you say you meet Highway cluster and you want to record to both endpoints and then I suggest you to check the document for the creation of cluster on cisco webesite.

    Now, if you have a cluster for Highway then you must create several srv records that would be pointing to each domain name FULL of the approved cluster with equal weight. In normal use scneario of domain common to different services are recommended.

    Srv records would have seen something like that.

    _sips._tcp.company.com. 86400 IN SRV 1 1 5061 vcse1.company.com.

    _sips._tcp.company.com. 86400 IN SRV 1 1 5061 vcse2.company.com.

    _sip._tcp.company.com. 86400 IN SRV 1 1 5060 vcse1.company.com.

    _sip._tcp.company.com. 86400 IN SRV 1 1 5060 vcse2.company.com.

    _h323ls._udp.company.com. 86400 IN SRV 1 1 1719 vcse1.company.com.

    _h323ls._udp.company.com. 86400 IN SRV 1 1 1719 vcse2.company.com.

    _h323cs._tcp.company.com. 86400 IN SRV 1 1 1720 vcse1.company.com.

    _h323cs._tcp.company.com. 86400 IN SRV 1 1 1720 vcse2.company.com.

    _h323rs._udp.company.com. 86400 IN SRV 1 1 1719 vcse1.company.com.

    _h323rs._udp.company.com. 86400 IN SRV 1 1 1719 vcse2.company.com.

    However, your case is different. In your deplyoment what you have to do is any request for the domain "cisco.com" should be resolved in FQDN of the VCS-Highway peers with equal weight.

    for example

    _tcp.gmail.com. IN SRV 20 0 5222     talk2.l.google.com.

    Therefore, any request to gmail.com would resolve to the talk2.1.google.com server.

    same way you have to make it work.

    Thank you

    Alok

  • CUCM VCS question

    Hello

    have a problem with the composition of CUCM to VCS (7.1). The girl scout way works fine.

    I played with the rules of search and transformations, but it won't work. The terminal on VCS is a SIP device.

    Here is the log:

    "21 sep 11:14:26 tvcs: event ="Call rejected"Service ="SIP"Src - ip ="10.234.40.5"Src-port = '5060' type-aliases-Src = Src-alias"SIP"=" sip:[email protected] "/ * /" Dst-alias-type = "SIP" Dst-alias = "sip:[email protected]/ * /: 5060" Call-serial-number="bdb3272c-03cc-11e2-bef9-0010f3249b3a" Tag = "bdb32808-03cc-11e2-bbef-0010f3249b3a" detail = 'Not found' Protocol = "TCP" response code "404" = Level = '1' elements UTCTime = "2012-09-21 09:14:26, 549"

    "" "21 sep 11:14:26 tvcs: event ="Research Service completed "="SIP"type-aliases-Src = Src-alias"SIP"="[email protected]/ * / "Dst-alias-type ="SIP"Dst-alias =" sip:[email protected]/ * /: 5060 "Call-serial-number="bdb3272c-03cc-11e2-bef9-0010f3249b3a "Tag ="bdb32808-03cc-11e2-bbef-0010f3249b3a" detail =" "found: FAKE, searchtype:INVITE ' Level = '1' elements UTCTime ="2012-09-21 09:14:26, 549"

    "Sep 21 11:14:26 tvcs: Event = Service of" attempt of call "="SIP"Src - ip ="10.234.40.5"Src-port = '5060' CBC-alias-type = Src-alias"SIP"=" sip:[email protected] "/ * /" Dst-alias-type = Dst-alias "SIP" = "sip:[email protected]/ * /: 5060" Call-serial-number="bdb3272c-03cc-11e2-bef9-0010f3249b3a" Tag = "bdb32808-03cc-11e2-bbef-0010f3249b3a" Protocol = "TCP" Auth = "" level = '1' elements UTCTime = "2012-09-21 09:14:26, 539"

    "" "21 sep 11:14:26 tvcs: event ="Attempt to search"Service ="SIP"type-aliases-Src = Src-alias"SIP"="[email protected]/ * / "Dst-alias-type ="SIP"Dst-alias =" sip:[email protected]/ * /: 5060 "Call-serial-number="bdb3272c-03cc-11e2-bef9-0010f3249b3a "Tag ="bdb32808-03cc-11e2-bbef-0010f3249b3a"details ="searchtype:INVITE"level ="1"elements UTCTime =" 2012-09-21 09:14:26, 539 "

    Could someone help?

    Concerning

    Jason

    Jason,

    the desitnation is coming as "[email protected]/ * /: 5060" and intellectual property should be 10.224.35.249.

    What to change here, it's changing the rule search.

    No source

    Regex (. *) @10.224.35.249 ((:|;). *)?

    replace action

    chain-[email protected]/ * /.

    the SIP AOR is [email protected]/ * / so I think it should work after the chnges to find the rule.

    Rgds,

    Alok

  • Question about VCS 7.1 Media flow-thru

    We currently have a way to call that looks like this:

    Endpoint (SIP and H323) > VCS control > VCS - E (SIP and H323) neighbouring area > firewall > neighbouring area to the CUBE (NOT only).

    When the VCS-E they interact SIP to H323 he directed media flow-thru allowing traffic through the firewall because it proxies all media and signaling.  However, if the call all the way SIP, it will proxy the call signaling but not the media.  Right now, we have it working, but we need to convert SIP H323 calls then back to SIP for it to work.

    Is there a way to force the VCS-E to proxy all media to the CUBE, rather than some media of interoperability calls?  I know it's usually what a crossing area is for, but AFAIK that does not work when you use CUBE to VCS-E.

    VCS - E has obviously the hardware capacity and processing to do this (because he now works via workarounds) so I hope that there is a way I can do a little more cleanly.

    Hello Nick!

    I don't know your deployment, especially when you run a nearby area of the

    VCS - c to the-e probably works, but you should know how it behaves for really knowing why

    to use it, and a hack so save licenses is often not the best starting point.

    You can configure the routing of locking media which will link the media to the vcs-e.

    (this may not work with all types of areas, at least all the profiles of the area, but at least it does with custom)

    *h xConfiguration Zones Zone [1..1000] Neighbor SIP MediaRouting Mode:

    "Specifies how the VCS handles the media for calls to and from this neighbor, and where it will forward the media destined for this neighbor. Signaled: the media is always taken for calls to and from this neighbor. It will be forwarded as signaled in the SDP received from this neighbor. Latching: the media is always taken for calls to and from this neighbor. It will be forwarded to the IP address and port from which media from this neighbor is received. Auto: media is only taken if the call is a traversal call. If this neighbor is behind a NAT the VCS will forward the media to the IP address and port from which media from this zone is received (latching). Otherwise it will forward the media to the IP address and port signaled in the SDP (signaled). Default: Auto"

    You must find the area id, then enter in the tsh - cli (admin ssh access):

    (replace with your number)

    xConfiguration Zones Zone Neighbor SIP MediaRouting Mode: Latching

    There are other options that might be of interest as setting routed to this area for ever,

    interwork or custom zone settings options, I would recommend that you're looking for by using the command line and Administrator's guide

  • Questions about VCS, MCU, ISDN gateway license

    Dear Expert.

    I question of license on my next device.

    (1) I have:

    VCSC - 10 calls Non-traversal, crossing 100 calls license license

    vcse - 5 traversal calls

    If I register the mcu and the endpoint to the VCSC as the guardian h323.

    I should have a 15 (5 calls traveral and 10 calls non-traversal) sites h323 conference call simultaneously on the MCU?

    > If I record my MCUS and endpoints to the ISDN gateway as the guardian h323.

    > I should be able to do an 18 sites (1 h323 calls and ISDN 17 * 128 Kbps) conference at the same time call

    > on the MCU?

    GK embarked on telepresence ISDN Gateway has no limitation for the number of concurrent calls.

    Limitation is only for the registration number.

    As gateway ISDN support audio connection gateway exclusively, with simultaneous simple T1 (T1 = 24 b, PRI = 23 b = D), maximum number of calls is superior to '18' as audio call consume only 1 b-channel.

  • Questions of FindMe Provisioning/user between TMS & VCS

    Hello

    I have what seems to be a problem in service between TMS and VCS.

    Using TMS to import users from AD (from 2 domains of x), everything seems to work, and can see the users in the provisioning of TMS directory. MOVI users use AD authentication which connect properly.

    User login also works very well on the VCS (with connection LDAP AD). However when to call the findme users address VCS does not recognize the configured users? If you navigate in user accounts, the user is not displayed, if you run a search on VCS (users account address name or findme) findme VCS find the user. Once the user has been found and open if you click on save button (without changing details), the user will then appear in the VCS user accounts section and findme works correctly.

    We use the TMS 13.1.1 and VCS x7.0.2 (Cluster).

    I would like to know if you have solved your problems or you are still having problems? Any suggestions for help would be appreciated.

    Thank you

    Matt

    Hi Matthew.

    Findme users must fill in the "user accounts".

    But you must make sure that the VCS 'Cluster name' matches the 'SIP server address' in TMS.

    TMS:

    VCS:

    I hope this helps.

    / Magnus

  • Question about multiple addresses of peers on a box next to VCS

    If we set up a nearby area in a VCS to point to multiple IP addresses (peer 1, 2 peer, etc.), he will always try first to use peer 1, or alternating?

    We have a secondary path on a remote site with lower WAN bandwidth, so we want only direct calls to address IP 2 peers when Peer 1 is unreachable.

    Nick,

    Area of peers are sought after doing round robin, for example, if we have 2 peers in one area, then the first message will go to the first hand then the next witl message go to the second peer then back to the first peer. Thank you

    Caesar

  • Questions of numbering of the TP server > driver > VCS

    I'm having a problem whereby participants who are composed to the driver (for example when the initiate of TMS) do not work.  Incoming calls to the work of conductor very well.

    Conductor newspapers show that MSD initiates the request to dial a number.  Then I see in the logs of the server TP to try to dial a number, but it fails saying "network error."  VCS has nothing in his history of research.

    If I changed the URI composed of [email protected] / * / to [email protected] / * /, makes the call to the VCS and I see it in the search history - it gives me to think that the driver is trying to dial directly, rather than using the Rendevous location I have configured (that points to the VCS.

    One thing I notice is that I can configure several sites, each with its own out-dial local IP address, but I can find no logic on the conductor who tells him where to use (to be noted that, in this scenario, I have only a configured location).

    Any ideas?

    I use TMS 14.6, server TP 4.1 (1.79), conductor 3.0.2, VCS 8.2.2.

    Verify that the location used by the conductor with the dialed outgoing address (IP VCS) is set on the Bridge Pool used.

    If it is not set, GST is trying to do a DNS lookup on the domain of the SIP URI and then establish a TCP connection with the returned address (in my lab, it is the address of the DNS server).  With no sheet set, if you call instead of the [email protected] / * / , he jumps the DNS lookup and goes directly to the IP address that works.

    This can be difficult to catch on the event log GST that you get an error message short network and you receive nothing more unless you assign SIP and NETWORK trace level.

    -Jonathan

Maybe you are looking for

  • Is it possible to clear the history for select sites only?

    I don't want to erase the whole story, just for sites I have accidentally opened or is no longer visit still continue to appear as suggestions whenever I start typing a web address in the browser field.

  • tab ' FLMain 'in my menu START, what is it and why it will not open. " Win XP

    This tab with the image of a closed padlock appears periodically.Have had several calls of Support MS, they want to get AMMYY.exe, I think that yes they can get remote access to my computer?    I have some warnings in eventvwr?Mike

  • Try ind to send a file.

    I have a file of pictures I want to send my brother. The Connection Wizard pops up and I'm stuck where he asks all incoming e-mail, POP3, IMAP or HTTP server and out goib. This type that in these areas?

  • WIFI connection

    Hello My internet connection (satellite, modem tp-link) works perfectly on my pc I have 3 WIFI networks in the House, I can connect without would each with maximum signal but can't do me connect to the internet. This isn't my tablet that is in questi

  • my external hard drive no longer works

    I have a Toshiba external hard drive (320 GB) and the FAT32 format. It was working fine but all of a sudden it was not as hard drive Toshiba but Local disk: F and it says I need to format it. What should I do? I want to backup my files :(