Use audit logs for managing and monitoring your infrastructure

Last published : Sep 25, 2026
You can use the {{page.adm-product-name-short}} to track all events on {{page.adm-product-name-short}} and syslog events generated on the {{page.citrix-adc-generic}} instances. These messages can help you manage and monitor your infrastructure. But log messages are a great source of information only if you review them, and {{page.adm-product-name-short}} simplifies the way of reviewing log messages.
You can use filters to search {{page.adm-product-name-short}} syslog and audit log messages. The filters help to narrow down your results and find exactly what you are looking for and in real time. The built-in Search Help guides you to filter the logs. Another way to view log messages is to export them in PDF, CSV, PNG, and JPEG formats. You can schedule the export of these reports to specified email addresses at various intervals.
You can review the following types of log messages from the {{page.adm-product-name-short}} GUI:
  • {{page.citrix-adc-generic}} instance related audit logs
  • {{page.adm-product-name-short}} related audit logs
  • Application audit logs

{{page.citrix-adc-generic}} instance related audit logs

Before you can view {{page.citrix-adc-generic}} instance-related syslog messages from {{page.adm-product-name-short}}, configure the {{page.adm-product-name-short}} as the syslog server for your {{page.citrix-adc-generic}} instance. After the configuration is complete, all syslog messages are redirected from the instance to {{page.adm-product-name-short}}.

Configure {{page.adm-product-name-short}} as a syslog server

Follow these steps to configure {{page.adm-product-name-short}} as the syslog server:
  1. From the {{page.adm-product-name-short}} GUI, navigate to Infrastructure > Instances.
  2. Select the {{page.citrix-adc-generic}} instance from which you want the syslog messages to be collected and displayed in {{page.adm-product-name-short}}.
  3. In the Select Action list, select Configure Syslog.
  4. Click Enable.
  5. In the Facility drop-down list, select a local or user-level facility.
  6. Select the required log level for the syslog messages.
  7. Click OK.
These steps configure all the syslog commands in the {{page.citrix-adc-generic}} instance, and {{page.adm-product-name-short}} starts receiving the syslog messages. You can view the messages by navigating to Infrastructure > Events > Syslog Messages. Click Need Help? to open the built-in search help. For more information, see View and Export syslog messages.
To export the log messages, click the arrow icon on the upper right corner.
Next, click Export Now or Schedule Export. For more information, see Export syslog messages.

{{page.adm-product-name-short}} related audit logs

Based on preconfigured rules, {{page.adm-product-name-short}} generates audit log messages for all events on, helping you monitor the health of your infrastructure. To view all audit log messages present in the {{page.adm-product-name-short}}, navigate to Settings->Audit Log Messages.
To export the log messages, click the arrow icon on the upper right corner.

Application related audit logs

You can view the audit log messages for all {{page.adm-product-name-short}} applications or for a specific application.
  • To view all audit log messages for all applications present in the {{page.adm-product-name-short}}, navigate to Infrastructure > Network Functions > Auditing.
  • To view audit log messages for any specific application in the {{page.adm-product-name-short}}, navigate to Applications > Dashboard > double-click the virtual server > Audit Log.
Note
You can forward {{page.adm-product-name-short}} audit log messages to an external server. For details, see View auditing information.