Skip to main content
This is the catalog of events you can subscribe to. The event name is also the logger name, so the value in Event Name is what goes into <logger name="...">.
A logger on its own logs nothingEvery logger needs at least one appender to say where the event goes. Start at Choose What to Log if you have not configured a channel yet.

How to read the tables

System Events

System events, numbered from 0 to 999, cover basic system functions like startup, shutdown, and configuration changes.

Message-tracing events

Message-tracing events, numbered from 1000 to 1999, track the flow of emails and messages through the system.

Audit trail events

Audit events, numbered from 2000 to 2999, capture user interactions and administrative actions within the XCC web interface.

Result publication tracing events

Result publication tracing events, numbered from 3000 to 3999, capture result synchronization and publication flow.

Threat analysis events

Threat analysis events, numbered from 4000 to 4999, record details about detected threats and threat intelligence attributes.

Other events

Other events, numbered from 9000 to 9999, include miscellaneous or maintenance-related events.