The Faults tab in Manager → Troubleshooting → Logs page displays messages that are generated to detail the system faults experienced by each of your Trellix IPS components installed.
Note
When management faults are raised and cleared too frequently on the Manager, the Manager may not have sufficient time to forward those faults to the Central Manager. As a result, there can be a fault count mismatch between the Manager and Central Manager for management faults.
To view the faults, follow the steps below:
Steps:
Go to Manager → Troubleshooting → Logs.
The Logs page opens.
Select Faults tab to view the system faults.
The data displayed in the table is based on the time frame of the core attribute in the faults table. By default, the logs for last 7 days are displayed. The data can be filtered for the time period of your preference using theCustom Time Period option.
The following table lists the fields on the Faults tab:
Options
Definition
Time
Displays date and time of fault occurrence
Fault
Displays severity and summary of the activity
Severity: Displays severity level of the activity
Different severity levels are as follows:
INFORMATIONAL
WARNING
ERROR
CRITICAL
Summary: Displays brief summary of the activity
Details
Displays brief report on nature of the activity
Duration
Displays the time period of fault existence
Device
Displays the details of the device that has generated the fault
The Device column contains two sub-columns:
Generated By - Specifies the device that generated the fault. The device can be the Central Manager or a Manager
Forwarded By - Provides more information about the device that generated a fault. For example, if a Manager generates a fault, this column specifies if the device is a primary Manager, secondary Manager, or a Sensor attached to the Manger.
You can save a copy of faults by clicking Save as CSV.
Note
The Save as CSV option saves a copy of system faults based on the filters applied. To save a copy of all system faults, clear all filters before saving it as Save as CSV.