Keyword Index screen


For Indexed searches, the system uses an index file that is automatically created and maintained by the system. This permits quick access to messages by keyword. The CO-gendex.exe program runs as a background process and continuously finds keywords within messages, and stores where these keywords can be found in the log file system. The parameters (and status) of the CO-gendex.exe program can be viewed via the Keyword Index link towards the top of the Messages > Search screen.

The out-of-box configuration for this keyword indexing system is usually sufficient for most applications, but various capabilities exist to modify and extend the indexing operation, including: 

  • Site Dictionary—You can update a Site Dictionary with special keyword specific to the site. Normally, for a word to be indexed, it must reside in the extensive BMC Defender Server system dictionary (that comes with the BMC Defender Server installation), or within a user-maintained dictionary. The Site Dictionary link appears on the Keyword Index screen (selected by the Keyword Index link on the Messages > Search screen.) 
  • Parsing Rules—You can select certain fields to be automatically indexed on the system based upon Parse Rules, that select data to be indexed outside of the dictionary. 

    The user can indicate that Logon IDs for Windows systems are automatically indexed. The Parsing Rules link appears on the Keyword Index screen (selected by the Keyword Index link on the Messages > Search screen.) 

  • Indexing Parameters—You can control the indexing system via the Parameters screen, to select various parameters that affect the performance of the search system, such as thresholds that determine whether a word is too common to be indexed, and the amount of storage that is allocated to the Indexing process. The Parameters link appears on the Keyword Index screen (selected by the Keyword Index link on the Messages > Search screen.)

The Keyword Index link, on the Messages > Search screen furnishes system level debug information, and can be used to tune the BMC Defender Server system, usually with the assistance of BMC Defender Server support. In the absence of special requirements, the end user generally never needs to modify these parameters, but might find this extra capability interesting or useful.


 

Tip: For faster searching, add an asterisk to the end of your partial query. Example: cert*