Hi guys,
We interrupted the log flow of a collector that we collected logs and closed it. We would like to see the logs here backward. When we search, we get a response after a long time (about 20 minutes) even if we do it for 10 minutes, and some fields are empty, even though Fortinet has its own products. Does anyone have any idea why?
Thank you
Hi,
How long was the collector offline? It’s possible the logs rolled over or were lost during that time.
You can check available log files and timestamps with:
ls -la /opt/phoenix/log/ | grep phoenix
This might explain the delay and missing data.
Hi @aebadi
Collector has just been closed, there is no new log flow, we want to see the previous logs. Logs are coming, but short-term search times also take a long time. Why do you think logs can be lost here?
Welcome to your new Fortinet Community!
You'll find your previous forum posts under "Forums"
User | Count |
---|---|
72 | |
25 | |
15 | |
10 | |
10 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.