3.4 Logging Agent Events

The Endpoint Security Agent logs information to the device’s local disk. This includes events related to application control, firewall management, hardware device control, data encryption, and much more.

By default, the logging level is set to Warning. If necessary, you can change it to Debug, Informational, or Error to gather more or less information. Log files, which are named Log_YYYYMMDD_HHMMSS_NNNN.txt, are located in the following hidden directory:

Windows 7/8/10: c:\ProgramData\Novell\ZES\Logs

For troubleshooting, you should set logging according to the directions of Micro Focus Support and re-create the circumstances that led to the error to see if it can be repeated.

To change the logging level:

  1. Open the Endpoint Security Agent About dialog box. See Working with the Endpoint Security Agent.

  2. Click Diagnostics.

  3. Click Logging.

  4. Change the logging levels as desired.

    By default, all logging events are set to Warning, but you can set each listed event to the following:

    Debug: Turns on every possible message and includes Informational, Warning, and Error messages.

    Informational: Records all events when they occur, such as when a network connection event begins and ends.

    Warning: Records errors that have occurred but are solvable and do not prevent the client from running.

    Error: Records errors that have occurred and prevent the client from running.

  5. If you want to save the new settings as the default settings, select Save as Defaults.

    The settings become the new default settings. If you change the settings at a later time and then decide that you want to go back to the default settings, you can click Restore Defaults.

  6. To insert a comment into the current log file, click Add Comment, type the comment, then click OK.

  7. Click OK to exit the dialog box.