FortiAnalyzer
FortiAnalyzer can receive logs and Windows host events directly from endpoints connected to EMS, and you can use FortiAnalyzer to analyze the logs and run reports.
HernandezA
Staff
Staff
Article Id 394082
Description This article describes how to check the log volume per day in FortiAnalyzer.
Scope FortiAnalyzer.
Solution
  1. Check the log volume by using the following command:

 

diagnose fortilogd logvol-adom <name> | all

 

FAZ# diagnose fortilogd logvol-adom root

2025-05-28 2025-05-27 2025-05-26 2025-05-25 2025-05-24 2025-05-23 2025-05-22 average
adom 'root':
39.66 MB 9.73 KB 10.57 KB 10.57 KB 10.57 KB 10.57 KB 10.57 KB 5.67 MB

 

This can also be verified in the GUI in the path Dashboard -> Status -> License Information -> logging Details Icon.

 

dashbordlogvol.jpg

 

dashbordlogvoldetails.jpg

 

This information is useful for determining the value of the LR variable to estimate the disk space required for archive and analytics logs: Technical Tip: How to Estimate Disk Space Needed for Archive and Analytics Logs

 

Related documents:
Technical Tip: Minimizing logging from FortiGate to FortiAnalyzer

fortilogd - FortiAnalyzer 7.6.3 CLI reference

Technical Tip: How to check FortiAnalyzer log rate