Skip to main content

June 2, 2026

Integrated Services Logging

Having a Workspace ONE UEM deployment allows you to have many integrated services and the required core services. You may have issues with some of these services and require assistance troubleshooting your error. Learn more about how Workspace ONE UEM provides log information for your integrated services to help fix your issues.

Explore and implement logging for services that you have integrated into your Workspace ONE UEM deployment. All Logs are located in the /AirWatch/Logs folder unless otherwise specified.

AirWatch Cloud Connector (ACC)

Learn more about the Workspace ONE UEM logging functions available for the AirWatch Cloud Connector (ACC). All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
CloudConnectorCloudConnector.logContains information about ACC Services such as directory authentication, group syncs, communication with CA/PKI, PowerShell, syslog, and additional ACC services.

Change the Logging Level for ACC

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. Access the CloudConnector.exe.config file contained in the /Airwatch/CloudConnector/Bank# folder.
  2. Compare the two bank folders to ensure you are editing the one with the most recent modified dates.
  3. Change the level from information to verbose in the line <loggingConfiguration> line.
  4. Allow the services a few minutes to pick up the logging change.

Secure Email Gateway v2 (SEGv2)

Learn more about the Workspace ONE UEM logging functions available for Secure Email Gateway v2 (SEGv2). All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

Folder Log Name Description
SecureEmailGateway /var/log/airwatch/docker/seg/app.logContains information on device transactions and an analysis of each request passed through SEG and SEG application logs.
SecureEmailGateway /var/log/airwatch/docker/seg/http-transaction.logContains information on overview of each email request passed through SEG (Transaction summary).
SecureEmailGateway /var/log/airwatch/docker/seg/policy-update.logContains information on the policy updates performed by SEG.
SecureEmailGateway /var/log/airwatch/docker/seg/active-sync-payload-reporting.logContains information active sync transaction reported to Email List view in console.
SecureEmailGateway /var/log/airwatch/docker/seg/non-compliant-devices.logContains information on transactions for devices blocked by SEG and reasons for blocking.
SecureEmailGateway /var/log/airwatch/docker/seg/cert-auth.logContains information of certificate authentication requests and certificate validation.
SecureEmailGateway /var/log/airwatch/docker/seg/cache.logContains information about SEG policy cache.
SecureEmailGateway /var/log/airwatch/docker/seg/content-transform.logContains information about content transformation (attachment and hyperlink transformation) processing.
SecureEmailGateway /var/log/airwatch/docker/seg/ews-proxy.logContains information about ews requests and proxy to ews endpoint.
SecureEmailGateway /var/log/airwatch/docker/seg/ews-transaction.logContains information on overview of ews transactions through SEG (Transaction summary).
SecureEmailGateway /var/log/airwatch/docker/seg/resources-usage.logContains information about CPU and memory usage.
SecureEmailGateway /var/log/airwatch/docker/seg/system-cpu-load.logContains CPU usage if it is exceeding the defined threshold for a given sustained period.
SecureEmailGateway /var/log/airwatch/docker/seg/thread-dump.logContains information about thread dump.
SecureEmailGateway\kerberos /var/log/airwatch/docker/seg/kerberos-service-manager.logContains information about Kerberos pipes availability.
SecureEmailGateway\kerberos /var/log/airwatch/docker/seg/AirwatchKerberosClientPipe-#.log (# is pipe number)Kerberos token retrieval requests.

Change the Logging for SEGv2

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. Access the Admin page at https://localhost:44444/seg/admin.
  2. On the Logging tab, change the logging level from Error to Debug.
  3. Wait a few minutes for the service to pick up the logging change.

Email Notification Service

Learn more about the Workspace ONE UEM logging functions available for Email Notification Service. All Logs are located in the file paths cited below.

FolderLog NameDescription
 AW.Mail.Notification.Service.logContains information on ENS communication such as log subscriptions to the email server, transactions with API servers, notification status for user/device, and communications to CNS.

Change the Logging Level for the Email Notification Service

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. Access the AW.Mail.Notification.Service.Config file contained in the Installation folder.
  2. Change the level from Error to Verbose in the application configuration.
  3. Wait a few minutes for the service to pick up the logging change.

Email Notification Service v2

Learn more about the Workspace ONE UEM logging functions available for Email Notfication Service v2. All logs are located in the file paths cited below.

FolderLog NameDescription
 ENS.logENS web application logging.
 ReSubscriptionMechanism.logLogs for the subscription service that runs monitoring user’s subscriptions and sending out notifications to have clients re-register.
 RSAKeysTracker.logLogs for service that monitors the key repository in the DB and triggers creations of additional keys when necessary.
/tools/uploadrsakeys/UploadRSAKeys.logContains information on the RSA Keys.
/database/AWDatabaseLog_MMDDYY.txtContains ENSv2 database transactions.
/%Installdir%/Airwatch_ENS_V2_InstallLog.txtContains information related to installation process for ENSv2.

Change the Logging Level for the Email Notification Service

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. Access the AW.Mail.Notification.Service.Config file contained in the Installation folder.
  2. Change the level from Error to Verbose in the application configuration.
  3. Wait a few minutes for the service to pick up the logging change.

Workspace ONE Tunnel

Learn more about the Workspace ONE UEM logging functions available for Workspace ONE Tunnel. All logs are in the file paths cited below.

FolderLog NameDescription
Workspace ONE Tunnel ProxyAirWatchDiagnosticService.logContains information on Tunnel diagnostic sample processing and saving.
Workspace ONE Tunnel Proxy /var/log/airwatch/proxy/proxy.log (Relay)Contains information on Tunnel Proxy such as allowed devices entries, authentication, and certificate status from requesting device to AWCM.
Workspace ONE Tunnel Proxyproxy.log (Endpoint)Contains information on web requests through the proxy and to the listening endpoint.
Workspace ONE Tunnel Proxy /var/log/airwatch/proxy/proxy-request.logContains HTTP request information for requests going through the proxy.
Workspace ONE Tunnel Proxy /var/log/airwatch/proxy/proxy-request.logHTTP request information for requests going through the proxy.
/var/log/airwatch/tunnel/vpnd/tunnel.logContains information on VPN communications such as allowing devices, communication with API/AWCM, and health check status.
/var/log/airwatch/tunnel/vpnd/tunnel_init.logContains information on Tunnel configuration and initialization.
/var/log/airwatch/tunnel/vpnd/reporter.logInformation about the test connection feature.
/var/log/airwatch/tunnel/vpnd/reporter_install.logInformation on the installation of vpnreportd service.

Change the Logging Level for Workspace ONE Tunnel

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. To change the logging levels for Workspace ONE Tunnel, in the console, navigate to Groups & Settings > All Settings > System > Enterprise Integration > Workspace ONE Tunnel > Configuration > Advanced.

Content Gateway

Learn more about the Workspace ONE UEM logging functions available for Content Gateway. All logs are located in the file paths cited below.

FolderLog NameDescription
ContentGateway /var/log/airwatch/content-gateway/CGContent.log (Relay)Contains information on Content Gateway access such as authentication, trust relationship establishment, and repository structure services.
ContentGateway /var/log/airwatch/content-gateway/CGContent.log (Endpoint)Contains information on repository folder actions and user impersonation.
ContentGateway /var/log/airwatch/content-gateway/Content-gateway-wrapper.logInformation about Content Gateway-related process lifecycle.
ContentGateway /var/log/airwatch/content-gateway/content-gateway.log, 0.content-gateway-YYYY-mm.dd.log.zipContains log messages from Content Gateway.
ContentGateway /var/log/airwatch/content-gateway/tunnel.logContains log messages from the tunnel process that is used as part of the XML API processing. You must have Tunnel enabled in the Horizon settings in order see this log.
ContentGateway /var/log/airwatch/content-gateway/tunnel-snap.tar.gzTarball containing Workspace ONE Tunnel server and proxy logs.
ContentGateway /var/log/airwatch/content-gateway/config.ymlContains Content Gateway configuration and log level details.
ContentGateway /var/log/airwatch/content-gateway/smb.confContains SMB client configuration.

Change the Logging Level for the Content Gateway

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more, or less information.

  1. Access the logback.xml file contained in the Content Gateway Config folder /opt/airwatch/content-gateway/conf.
  2. Change the level to debug in the <logger name="com.airwatch" level="info" /> line.
  3. Wait a few minutes for the service to pick up the logging change.

Unified Access Gateway (System Information)

Use this information for UAG-based services using the Log Archive download option under the UAG Admin UI Support Settings page. Learn more about the Workspace ONE UEM logging functions available for Unified Access Gateway (System Information). All Logs are located in the file paths cited below.

FolderLog NameDescription
/Opt/AirWatch/Gateway/Logs*.ZIPCollection of log files on the UAG appliance.
/Opt/AirWatch/Gateway/Logsrpm-version.logContains system info versioning for UAG appliance.
/Opt/AirWatch/Gateway/Logsipv4-forwardrules.logContains IPv4 forwarding rules on the appliance.
/Opt/AirWatch/Gateway/Logsdf.logContains information about disk space usage on the appliance.
/Opt/AirWatch/Gateway/Logsnetstat.logContains information on open ports and existing TCP connections.
/Opt/AirWatch/Gateway/Logsnetstat-s.logContains network statistics from the time of creation of the appliance.
/Opt/AirWatch/Gateway/Logsnetstat-r.logContains static routes created on the appliance.
/Opt/AirWatch/Gateway/Logsuag_config.json,uag_config.iniContains the configuration of the UAG appliance.
/Opt/AirWatch/Gateway/Logsps.logContains process running at the time of downloading logs.
/Opt/AirWatch/Gateway/Logsifconfig.logContains information on the network interface configuration for the appliance.
/Opt/AirWatch/Gateway/Logsfree.logContains the amount of free RAM at the time of log gathering.
/Opt/AirWatch/Gateway/Logstop.logContains a list of processes sorted by memory usage at the time of log gathering.
/Opt/AirWatch/Gateway/Logsiptables.logContains IPv4 IP tables.
/Opt/AirWatch/Gateway/Logsip6tables.logContains IPv6 IP tables.
/Opt/AirWatch/Gateway/Logsw.logContains information about up time and users currently on the machine.
/Opt/AirWatch/Gateway/Logssystemctl.logContains a list of services running in the appliance.
/Opt/AirWatch/Gateway/Logsresolv.confContains info on the local clients connections to known DNS servers.
/Opt/AirWatch/Gateway/Logshastats.csvContains stats per node and total stats information for each back end type (Edge Service Manager, Workspace ONE Tunnel, Content Gateway).

Unified Access Gateway

Use this information for UAG based services using the Log Archive download option under the UAG Admin UI Support Settings page. Learn more about the Workspace ONE UEM logging functions available for Unified Access Gateway. All Logs are located in the file paths cited below.

FolderLog NameDescription
/Opt/AirWatch/Gateway/Logssupervisord.logContains information on the Supervisor which manages the edge service manager, admin, and AuthBroker).
/Opt/AirWatch/Gateway/Logsesmanager-x.logContains information on the Edge service manager which shows back end processes performed on the appliance.
/Opt/AirWatch/Gateway/Logsesmanager-std-out.logContains information on the Edge service manager which shows back end processes performed on the appliance.
/Opt/AirWatch/Gateway/Logsaudit.logContains audits for all admin user operations.
/Opt/AirWatch/Gateway/Logsauthbroker.logContains information from the AuthBroker process, which handles Radius and RSA SecurID authentication.
/Opt/AirWatch/Gateway/Logsadmin.log 
/Opt/AirWatch/Gateway/Logsadmin-std-out.logContains information on the admin GUI logs and messages from the process that provides REST API.
/Opt/AirWatch/Gateway/Logsbsg.logContains information from the Blast Secure Gateway.
/Opt/AirWatch/Gateway/LogsSecurityGateway_xxx.logContains information from the PCoIP Secure Gateway.
/Opt/AirWatch/Gateway/Logsutserver.logContains information from the UDP Tunnel server.
/Opt/AirWatch/Gateway/LogsactiveSessions.csvContains a list of active Horizon and WRP sessions.
/Opt/AirWatch/Gateway/Logshaproxy.confContains information on the HA proxy configuration parameters for TLS port sharing.
/Opt/AirWatch/Gateway/Logsvami.logContains information from running vami commands to set network interface configurations during deployment.
/Opt/AirWatch/Gateway/Logscontent-gateway.log, content-gateway-wrapper.log, 0.content-gateway-YYYY-mm.dd.log.zipContains log messages from Content Gateway.
/Opt/AirWatch/Gateway/Logstunnel-snap.tar.gzTarball containing Workspace ONE Tunnel server and proxy logs.
/Opt/AirWatch/Gateway/Logsadmin-zookeeper.logContains information on the data layer that is used to store the UAG configuration.
/Opt/AirWatch/Gateway/Logsaw-appliance-agent.logContains information on the Appliance agent which is responsible for starting AirWatch services.
/Opt/AirWatch/Content-Gateway/conf/config.ymlContains Content Gateway configuration and log level details.
/Opt/AirWatch/Content-Gateway/smb-connector/smb.confContains SMB client configuration.
/Opt/AirWatch/Content-Gateway/smb-connector/smb-connectorContain SMB protocol and log level details.

Change the Logging Level for the Unified Access Gateway Service

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. In the Unified Access Gateway Admin UI, navigate to Support Settings > Log Level Settings > .

  2. Select INFO, ERROR, WARNING, or DEBUG based on your requirements.

  3. Wait a few minutes for the service to pick up the logging change.

    LevelType of Information Collected
    INFOInformation messages that highlight the progress of the service.
    ERRORError events that might still allow the service to continue running.
    WARNINGPotentially harmful situations but are usually recoverable or can be ignored.
    DEBUGEvents that would generally be useful to debug problems. You can enable the debug mode to view or manipulate the internal state of the appliance. The debug mode lets you test the deployment scenario in your environment.
      
  4. Restart each service after saving changes.

Legacy Remote File Storage

Learn more about the Workspace ONE UEM logging functions available for Remote File Storage. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
RemoteFileStorageRfs-web.logContains information on RFS such as certificates, tokens, files, and storage file paths.

Legacy Content Rendering Engine

Learn more about the Workspace ONE UEM logging functions available for Content Rendering Engine. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
/var/log/airwatch/cre/Cre.logContains information on CRE such as Hazelcast, render requests, and associated manifests.

Change the Logging Level for the Content Rendering Engine

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. Access the logback.xml file contained in the CRE Configuration Folder.
  2. Edit the file on using the Linux vi editor or on WinSCP.
  3. Write text in the logback.xml file.
    1. Enter i to begin writing text.
    2. Change the logging level XML attribute value in both the logger and root XML elements.
    3. Select Esc to exit edit.
    4. Press wq! to write and quit.

Change the Logging Level for the Content Rendering Engine

Legacy Advanced Remote Management

Learn more about the Workspace ONE UEM logging functions available for Advanced Remote Management. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
Program Files/RemoteManagement/Logs*.logContains information on Remote Management communications including that of Registry Editor.

Change the Logging Level for Advanced Remote Management

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more or less information.

  1. To change the logging level for the Remote Management Service on the device, change the apListener.application.config, FileManager.application.config and RemoteControl.application.config in the Config folder to 'DEBUG'.

Workspace ONE Assist

Learn more about the Workspace ONE UEM logging functions available for Workspace ONE Assist. All Workspace ONE Assist server logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
C:/Program Files/AirWatch/WorkspaceONEAssist/AetherpalToolController/logs/AetherpalToolHandler_<SessionID>.txtCorresponding log related to console side events for the same Connection Proctor event.
C:/Program Files/AirWatch/WorkspaceONEAssist/AetherpalToolController/logs/Bootlog_AetherpalToolHandler.txtContains information whenever a session is invoked from the console.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/SessionLogssyslog_aphandler_stcp<ARMURL>#ID=<SessionID>.txtContains information on each remote session launched with Workspace ONE Assist.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/bootlog_aphandler.txtContains starting parameters of Workspace ONE Assist Connection Proctor service.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/Syslog_aphandler.txtContains heartbeat checks for Workspace ONE Assist Connection Proctor servers.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/Bootlog_ConnectorProctorService.txtContains starting parameters of Workspace ONE Assist Connection Proctor service.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/Syslog_ConnectionProctorService.txtContains information on Workspace ONE Assist service level events. Examples are last service start times and successful connections.
C:/Program Files/AirWatch/WorkspaceONEAssist/ConnectionProctor/logs/Bootlog_ConnectionProcotrService.txtContains information on Workspace ONE Assist service level events.
C:/Program Files/AirWatch/WorkspaceONEAssist/logs/Anchor/anchor-service.txtContains information on Workspace ONE Assist server and client transaction.
C:/Program Files/AirWatch/WorkspaceONEAssist/logs/Admin/ T10T10-service.txtContains information on Workspace ONE Assist and Workspace ONE UEM device validation.
C:/Program Files/AirWatch/WorkspaceONEAssist/ManagementEntity/logsBootlog_MgmtEntityService.txtContains starting parameters of Workspace ONE Assist Management Entity service.
C:/Program Files/AirWatch/WorkspaceONEAssist/ManagementEntity/logsSyslog_MgmtEntityService.txtContains information on Connection Proctor Service Checkins and available nodes.
C:/Program Files/AirWatch/WorkspaceONEAssist/DataTierProxy/logsBootlog_DataTierProxyService.txtContains starting parameters of Workspace ONE Assist DataTier Proxy service.
C:/Program Files/AirWatch/WorkspaceONEAssist/DataTierProxy/logsSyslog_DataTierProxyService.txtContains information If other proxy status of dependent Workspace ONE Assist services.
C:/Program Files/AirWatch/WorkspaceONEAssist/DataTierProxy/logsdtp-service.txtContains information on service configurations and data source information.
C:/Program Files/AirWatch/WorkspaceONEAssist/ServiceCoordinator/logsBootlog_ServiceCoordinatorService.txtContains starting parameters of Workspace ONE Assist Service Coordinator service and successful database connection.

Change the Logging Level for Workspace ONE Assist

  1. Logging level updates are generally not required for Workspace ONE Assisst - Error messaging generally has enough information to fully identify issues.
  2. For additional assistance with verbose logging, contact Workspace ONE Support.

Workspace ONE Access Service

Learn more about the Workspace ONE UEM logging functions available for Worksapce ONE Access Service. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
/…/opt/airwatch/horizon/workspace/logsAccessontrol-service.logAccess control service logging which handles role based access control for Workspace ONE Access admins.
/…/opt/airwatch/horizon/workspace/logsAdmin-Tool.logContains outputs from scripts called as admin tools.
/…/opt/airwatch/horizon/workspace/logsAnalytics-service.logLog for analytics service that managed audit events, reports, and search functionality.
/…/opt/airwatch/horizon/workspace/logsaudit-service.logContains information on services and servlets including the API and elastic search functionalities.
/…/opt/airwatch/horizon/workspace/logsCalculator-deadletters.logContains information on anything that was not calculated.
/…/opt/airwatch/horizon/workspace/logsCalc-v2.logContains information on when the calculators were run. Calculators are responsible for completing entitlements of users/groups to app in the background.
/…/opt/airwatch/horizon/workspace/logsCatalina.logContains information on the Tomcat service. Date indicated roll-over.
/…/opt/airwatch/horizon/workspace/logsCert-proxy.logContains certificate proxy information used by Android Mobile SSO. Date indicates roll-over.
/…/opt/airwatch/horizon/workspace/logsCertproxy-catalina.logStderr /stdout for cert proxy process.
/…/opt/airwatch/horizon/workspace/logsCertproxy-service.YYYY-MM-DD.logApache commons daemon wrapper logs for starting cert-proxy (date appended).
/…/opt/airwatch/horizon/workspace/logsConfigurator.logContains information related to the configurator admin UI that runs on port 8443.
/…/opt/airwatch/horizon/workspace/logsConnector.logContains information related to the Workspace ONE Access Connector. Only available for 3.3.x+.
/…/opt/airwatch/horizon/workspace/logsConnector-sync.logConnector synchronization logs. Only available for 3.3.x+
/…/opt/airwatch/horizon/workspace/logsDb-sql-and-tx.logSQL and transaction database logs for IDM.
/…/opt/airwatch/horizon/workspace/logsEntitlement-calc-logic.logContains information on an additional background calculator specifically the entitlement calculations.
/…/opt/airwatch/horizon/workspace/logsEntitlement-calc-stats.logContains information on an additional background calculator specifically the entitlement calculations.
/…/opt/airwatch/horizon/workspace/logsGreenbox_web.logContains information of all user interface interactions for web and mobile.
/…/opt/airwatch/horizon/workspace/logsGroup-calc-logic.logContains information on an additional background calculator specifically the group entitlement calculations.
/…/opt/airwatch/horizon/workspace/logsGroup-calc-stats.logContains information on an additional background calculator specifically the group entitlement calculations.
/…/opt/airwatch/horizon/workspace/logsHorizon.logWorkspace ONE Access service log which includes Identity Adapters, RabbitMQ, Elasticsearch, Ehcache, and other subsystems
/…/opt/airwatch/horizon/workspace/logsHorizon-ceip.logContains information related to horizon and the device communications back to the service.
/…/opt/airwatch/horizon/workspace/logsHorizon-persist.logContains information on the DB Schema.
/…/opt/airwatch/horizon/workspace/logsHorizon-sockjs.logContains information of web socket communications between service and connector.
/…/opt/airwatch/horizon/workspace/logsHost-manager.logContains information on the Tomcat service. Date indicates roll-over. This log is not utilized in the latest release.
/…/opt/airwatch/horizon/workspace/logsIdm-service.YYYY-MM-DD.logApache commons daemon wrapper logs for starting IDM (date appended).
/…/opt/airwatch/horizon/workspace/logsLocalhost.logContains information on the Spring framework. Date indicates roll-over.
/…/opt/airwatch/horizon/workspace/logsmtkadmin.logContains information related to Kerberos adapter.
/…/opt/airwatch/horizon/workspace/logsManager.logContains information on the Tomcat service. Date indicates roll-over. This log is not utilized in the latest release.
/…/opt/airwatch/horizon/workspace/logsTcruntime-instance.logContains information on the Tomcat service. Date indicates roll-over. This log is not utilized in the latest release.
/…/opt/airwatch/horizon/workspace/logstomcat.pidContains the PID for Tomcat.
/…/opt/airwatch/horizon/workspace/logsairwatchcertproxy-stderr.logContains information on the certificate proxy component. This log is not utilized in the latest release.
/…/opt/airwatch/horizon/workspace/logsWorkspace.logContains information related to the service including startup errors.
/…/opt/airwatch/horizon/workspace/logsWrapper.logContains information on the Tomcat Wrapper service. This log is not utilized in the latest release.
/…/opt/airwatch/horizon/workspace/logsWsadmin.logContains information on the admin servlet.
/…/opt/airwatch/horizon/workspace/logsconnector-dir-sync.logContains information related to directory sync activities. (Embedded Connector)

Workspace ONE Access Connector

Learn more about the Workspace ONE UEM logging functions available for Worksapce ONE Access Connector. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
/AirWatch/IDMConnector/Idm-connector-installer.logContains information on install history and status of the Workspace ONE Access Connector Service. Applicable to version 19.03.01.
/Opt/…/Workspace/LogsConfigurator.logContains information on the configurator admin UI that runs on port 8443. Applicable to version 19.03.01.
/Opt/…/Workspace/LogsConnector.logContains information related to the Workspace ONE Access Connector. Applicable to version 19.03.01.
/Opt/…/Workspace/LogsWorkspace.logContains information on service such as startup errors. Applicable to version 19.03.01.
/Opt/…/Workspace/LogsCatalina.logContains information on the Tomcat service. Date indicates roll-over. Applicable to version 19.03.01.
/Opt/…/Workspace/LogsLocalhost.logContains information on the Spring framework. Date indicates roll-over. Applicable to version 19.03.01.
\opt\airwatch\horizon\workspace\logs\connector-dir-sync.logContains information related to directory sync activities. Applicable to version 19.03.01.
/User Auth Service/logs/eas-service.logInformation about the activity on the Enterprise services, such as directory sync and logins.
/Directory Sync Service/logs/eds-service.logInformation about the activity on the Enterprise services, such as directory sync and logins.
/Kerberos Auth Service/logs/eks-service.logInformation about the activity on the Enterprise services, such as directory sync and logins.
/User Auth Service/logs/eas-vertx-access.logInformation about the API requests on the Enterprise services.
/Directory Sync Service/logs/eds-vertx-access.logInformation about the API requests on the Enterprise services.
/Kerberos Auth Service/logs/eks-vertx-access.logInformation about the API requests on the Enterprise services.
/User Auth Service/logs/ UserAuthService.out.logInformation about the process running the Enterprise services.
/Directory Sync Service/logs/DirectorySyncServiceDirectorySyncService.out.logInformation about the process running the Enterprise services.
/Kerberos Auth Service/logs/KerberosAuthService.out.logInformation about the process running the Enterprise services.
/User Auth Service/logs/UserAuthService.err.logError information about the process running the Enterprise services.
/Directory Sync Service/logs/DirectorySyncService.err.logError information about the process running the Enterprise services.
/Kerberos Auth Service/logs/KerberosAuthService.err.logError information about the process running the Enterprise services.
/User Auth Service/logs/UserAuthServiceUserAuthService.wrapper.logInformation about the process running the Enterprise services such as Java options and process ID.
/Directory Sync Service/logs/DirectorySyncService.wrapper.logInformation about the process running the Enterprise services such as Java options and process ID.
/Kerberos Auth Service/logs/KerberosAuthService.wrapper.logInformation about the process running the Enterprise services such as Java options and process ID.

Change the Logging Level for the Workspace ONE Connector - 20.01+

To turn on DEBUG mode, follow these steps:

  1. Log in to the connector server.
  2. Edit the log4j2-override.xml file for the service you are troubleshooting.
    1. To adjust the log level for the Directory Sync service, edit the INSTALL_DIR\Workspace ONE Access\Directory Sync Service\conf\log4j2-override.xml file.
    2. To adjust the log level for the User Auth service, edit the INSTALL_DIR\Workspace ONE Access\User Auth Service\conf\log4j2-override.xml file.
    3. To adjust the log level for the Kerberos Auth service, edit the INSTALL_DIR\Workspace ONE Access\Kerberos Auth Service\conf\log4j2-override.xml file.
    4. To adjust the log level for the Virtual App service, edit the INSTALL_DIR\Workspace ONE Access\Virtual App Service\conf\log4j2-override.xml file.
      1. Only applicable to 21.08+
  3. In the following lines, change INFO to DEBUG and save the file:
```

Change the Logging Level for the Workspace ONE Connector - Legacy

One of the functions available for Workspace ONE UEM integrated services is to change the log level to get more, or less information. Applicable to version 19.03.01.

  1. Access the l hc-log4j.properties file contained in /usr/local/horizon/conf/ .
  2. Add “log4j.rootLogger=DEBUG,rollingFile,SYSLOG” to the first line of the file.
  3. Wait a few minutes for the service to pick up the logging change.

Workspace One Intelligence

Learn more about the Workspace ONE UEM logging functions available for Worksapce ONE Intelligence. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
/Airwatch/ETLService/LogsEtl.log (YYYY-MM-DD)Contains log information for WorkSpaceONE Intelligence Connector (ETL). Contains health status information and information around successful/failure events.

Memcached

Learn more about the Workspace ONE UEM logging functions available for Memchached. All Logs are located in the <installdrive>:/AirWatch/Logs folder unless otherwise specified.

FolderLog NameDescription
/var/log/memcached-monitor/Memcached-{mm-dd-yyyy}Logs useful statistics about the Memcached solution.

Dell Factory Provisioning Service

Learn more about the Workspace ONE UEM logging functions available for the optional Factory Provisioning component. All Logs are located in the <installdrive>:/Logs folder unless otherwise specified.

FolderLog NameDescription
/Airwatch/LogsFactoryProvisioning.Service.logThis file has any diagnostics (info, warnings, errors) messages generated during the runtime of the Factory Provisioning Windows Service which is the service performing the PPKG packages generation requested by admins.
/AirWatch/Factory Provisioning Services/Website/AirWatch.WS1.FactoryProvisioning.API.logThis file has any diagnostics (info, warnings, errors) messages generated during the runtime of the Factory Provisioning Windows API which is the service accepting the PPKG packages generation requests by admins through different front-end components like the AW Console.
\AirWatch\Factory Provisioning Service\Services\AirWatch.WS1.FactoryProvisioning.Service.exe.configConfiguration file

Airlift

Learn more about the Workspace ONE UEM logging functions available for the optional Airlift component. All Logs are located in the <installdrive>:/Logs folder unless otherwise specified.

FolderLog NameDescription
/Program Files/ AirWatch/ AirWatch Airlift/Logs/Airlift-YYYMMDD.logContains all AirLift information on calls made to the API endpoint of Workspace ONE UEM and Microsoft ConfigManager.

Was this page helpful?

Provide feedback for this topic

Was this topic helpful?

Please do not include any personal or confidential information.

Generating link…