Download Cloud Agent Logs

Enable Remote Log Collection

A Remote Log Collection is an opt-in feature with which you can allow Qualys Support to retrieve the Cloud Agent log files and send the files to the Qualys Enterprise TruRisk™ Platform for debugging purposes.

This feature helps to reduce time to resolution for the support cases, especially where the users are remote, and Qualys admins do not have access to the end systems on which Cloud Agent for Windows is installed.

How to Disable Remote Log Collection for Subscription

The remote log collection is enabled by default. If the feature is disabled from your end, it cannot be enabled by the Qualys backend. You can enable the feature from the Cloud Agent application. This provides you with control over the Remote Log Collection feature. Perform the following steps to disable it.

  1. In the Cloud Agent user interface, navigate to Configuration > Settings tab.
  2. Open the REMOTE LOG COLLECTION window.
  3. Disable the Remote Log Collection option with the toggle.

The Remote Log Collection feature is available with Qualys Cloud Agent Windows 5.0 or Qualys Cloud Agent Linux 5.6.

If Qualys Support tries to collect log files while the feature is disabled, the following error message is displayed:
Remote log collection is disabled for the subscription.

The Windows Cloud Agent uses Powershell Commands for remote log collection. Ensure that, the Powershell Execution Policy is assigned the unrestricted access for seamless operation of this feature.

Download Cloud Agent Logs

You need the logs to troubleshoot the Cloud Agent. You can make the logs download request from the Cloud Agent user interface.

The following are the Cloud Agent logs download steps:

  1. To download the logs for your Cloud Agent, in the Quick Actions menu, navigate to Troubleshooting > Request Logs.
  2. In the Request Agent Logs window, configure the download request with the following setting:



    Application Selection Field: In the module selection field, select the applications for which you want to download Cloud Agent logs. You can select the All option to download Cloud Agent logs for all the applications in your subscriptions.

    Bypass PowerShell Execution Policy: Select this checkbox to bypass the PowerShell execution policy. By enabling this option, you allow Cloud Agent to run both the signed and unsigned PowerShell scripts, irrespective of the execution policy set on the asset.

    Request Type: You can select whether to download the Agent logs or the Agent logs and directory files
  3. Click Submit. Your Cloud Agent log download request is submitted to the server. You can view all the pending and completed log download requests for the last seven days at the Agent Management > Agents Logs tab.

Agent Logs

You can view the Cloud Agent log requests in the Agent Logs tab. The request status is displayed as Processing or Completed. From the Quick Actions menu, you can download the logs or delete the log download request. To access options in the Quick Actions menu, your request status must be marked as Completed

Log download requests are archived after they exceed the expiration time. By default, the following are the expiration times for log download requests:
— The log download requests with Completed status are archived after 7 days.
— The log download requests with Processing status are archived after 3 days.