That's what I do also - logging trap warnings. I set the local logging to informational for more visibility.
I elevate the VPN user logins to warning level.
I also have elevated the change of a tracked route in instances where I am using ip sla operation to change the default route in the event of loss of the primary ISP. i.e.:
logging message 622001 level warnings