The files are per component, under
/var/log/xorlab/<stack>/<container>/ — Operation Reference lists the names, and Troubleshooting shows how to read them over SSH. They stay on the host: to get any of this off the platform, configure a channel as described in Logging Overview.
Change the defaults
Each component has alogback.properties next to its logback-audit.xml, for example activeguard/core/logback.properties and xcc/backend/logback.properties. Set only the properties you want to change; anything you leave out keeps the default below.
- In the Expert Editor, open
logback.propertiesin the component’s directory. - Add or change the property.
- Click Publish. The logging configuration becomes active within about one minute.
logback.properties
These properties change the built-in files only. The events you forward with a
logback-audit.xml are unaffected — their format is the pattern in their own appender.