Skip to main content
tchich
New Member
May 23, 2016
Question

Traffic log not found in logview but found in log browser

  • May 23, 2016
  • 1 reply
  • 6289 views

Hello

 

As the title explain it, I have traffig logs that I can display in the log browser, but I can't see them in the logView. I have already tried to regenerate the database and already try to reindex it.

But it doesn't work.

Any idea ?

 

 

 

1 reply

scao_FTNT
Staff
Staff
May 27, 2016

what is the FAZ version and FGT version?

 

can you provide "diag fortilogd lograte" and "diagnose sql status sqlplugind"

 

Thanks

 

Simon

tchich
tchichAuthor
New Member
June 24, 2016

Absolutely;

 

FortiAnalyzer-1000C # diag fortilogd lograte logs/sec: 180.6, logs/30sec: 198.6, logs/60sec: 203.7 FortiAnalyzer-1000C # diagnose sql status sqlplugind PID: 455, now: 1466779530, uptime: 3121255 Thread registered: 2 Log insert speed: logs/5sec: 234.2, logs/60sec: 218.5  Overall: 1138.1 (3552317581) Log received: logs=3552317581 bat=31790989 avg-bat-sz=112 ack=31792468 ack-drop=0 ack-err=0 bat-recv=31792468 misc-recv=28516 writers=1 indexers=1 tri-force=0 logtab: new-dbtbl=33736 orphan=3 zombie=0 master-tbl:new=14823/free=6611 child-tbl:new=18913/free=6617 logtab: master-tbl create_err=0, child-tbl create-err=0 tr-err=0, new-retry=3 commit-locate-err: adom=0 master-tbl=0 child-tbl=0 trim: req=103 drop-tbl=6611 total-sz=568417(MB) chkdisk=98162 diskfull=0 mdevtree=14683 trim-alerts: trim=166 total=6694, flush=1 total=0 sqldata: batch=31792468 insert=0 update=0 alert=6875 al-log=21640 al-flush=1          dup_batch=0 invalid_sql=1429 tasklist-tri: add=3476486 renew=60122600 run=3476475 save=17109672 tasklist-reg: add=58764 renew=735229 run=58755 save=6220 index-task: add=18221 renew=376463 drop=0 done=18217 task-stats: new=3535250 free=3535230 recv-conn: accept=1 close=0 close-conn: idle=0 threshold=0 all_threshold=0

tchich
tchichAuthor
New Member
June 24, 2016

Oups, I forget the version:

FAZ: 5.2.5

FGT: 5.2.5

But I have anothers FGT with 5.2.6, and FGT 5.0.X with exactly the same symptoms. The only logs concerned are the traffic logs. I don't have the probleme with event.log. Furthermore, I can see the top source or destination in the fortiview.

 

Thx for your help.